Skip to content

Lookups for the Splunk Add-on for JBoss

The Splunk Add-on for JBoss has one lookup. The lookup file map fields from JBoss EAP server logs to CIM-compliant values in the Splunk platform. The lookup file is located in $SPLUNK_HOME/etc/apps/Splunk_TA_jboss/lookups.

Filename Description
jboss_severity_type.csv Maps log_level to severity,type
jboss_http_status.csv Maps the action field to a status_description value for individual status code.