System Requirements
Splunk® Enterprise 6.6.1 or latest should be installed on the system. VMware NSX
appliances can be configured to forward logs to the Splunk server with the
server IP address and desired port number.

Installation
The NSX App for Splunk can be installed at Apps -> Setting Icon -> Install app
from file -> Choose nsx_splunk_app.spl and check the "Upgrade app" option. After
installation you will be able to see NSX App for Splunk in the Apps list.

Configuration
Data input ports can be configured at Settings -> Data inputs -> TCP/UDP.

After installation and configuration, you will be able to see VMware NSX
specific fields in the Search tab and nsxt_logging_content_pack_dashboard in
the Dashboards tab.
