Page tree

Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Configure Lumeta for Splunk

First, configure Lumeta to export notifications to a Splunk server.

  1. On your Lumeta Command Center, browse to Settings > Lumeta Systems.

  2. In the CEF Notifications pane, on the Configuration tab, supply the host name or IP address of your Splunk server, the number of the port you want to communicate over (e.g., 9997) and protocol (e.g., TCP).

    Image Removed

Create API Key

You will need an API key later, when configuring Lumeta input on your Splunk server. Generate one using this procedure.

To generate the API key:

...

Installing the Lumeta Plug-In on Splunk

  1. Download these two zipped application files to your local system:
    1. TA-lumeta.zip
    2. lumeta_app.zip
  2. Unzip them.
  3. Log in to your Splunk server.
  4. Select the Manage Apps (gear) icon.
    Image Removed
  5. In the upper right corner, click Install App from File.
  6. Browse to TA-lumeta.? and upload it.
  7. When prompted, click Restart Now.
  8. Repeat steps 3 - 6, this time with lumeta-app.? You will not need to restart the system with lumeta-app upload.
    Lumeta Apps display on the Splunk Dashboard.
    Image Removed

...

Configuring Lumeta in Splunk

Inputs 

Image RemovedImage Removed

...

Children Display