OPNsense App (Opnsense_App_for_Splunk)¶
Disclaimer
This Splunk App is community driven and not affiliated with the official OPNsense® Firewall. As such, the included documentation does not contain information on how to get started with this firewall. Rather, this documentation serves as a guide to help visualize the data in Splunk. Please visit https://opnsense.org/ for documentation on installing/configuring your own OPNsense firewall.
The OPNsense App for Splunk helps make your firewall data meaningful. Visualize system or security related events recorded by the OPNsense® Firewall. This app requires the OPNsense Add-on for Splunk.
Key Features¶
- See system information including packages, plugins, and available updates.
- Better manage your Splunk license with a view to help identify the impact of the OPNsense data volume.
- Analyze traffic patterns and help troubleshoot issues.
- Visualize VPN traffic and look for suspicious connections.
Assumptions¶
This documentation assumes the following:
- You have a working OPNsense firewall.
- You have a working Splunk environment.
- Basic understanding of Splunk and OPNsense.
- The OPNsense Add-on for Splunk has been installed and configured.
About¶
Info | Description |
---|---|
Version | 1.1.5 - Splunkbase | GitHub |
Vendor Product Version | OPNsense® 22 | 23 |