This app uses the Swit Audit Logs API to store logs in Splunk through the Log Pull method.
This app can be installed on On-Prem or Cloud deployments of Splunk.
[Splunk Classic Cloud]
You cannot install an app directly on Classic. Please request Splunk to install it for you through a support ticket.
[Splunk Victoria Cloud]
Search for “Swit Add-on for Splunk” in "Apps" and install it directly.
The configuration steps are common for On-prem and Cloud.
As a Splunkbase app developer, you will have access to all Splunk development resources and receive a 10GB license to build an app that will help solve use cases for customers all over the world. Splunkbase has 1000+ apps from Splunk, our partners and our community. Find an app for most any data source and user need, or simply create your own with help from our developer portal.