Skip to content

Splunk Enterprise must be configured to retain the identity of the original source host or device where the event occurred as part of the log record.

An XCCDF Rule