Illumio App for Splunk Version 3.2.x
Integration Guide
The Illumio App for Splunk integrates with the Illumio Policy Compute Engine (PCE) to provide security and operational insights into your Illumio-secured data center.
The Illumio Technology Add-On for Splunk enriches Illumio Policy Compute Engine (PCE) data with Common Information Model (CIM) field names, event types, and tags. The TA enables Illumio data to be used with Splunk Enterprise Security, Splunk App for PCI Compliance, and other Splunk applications.