User's Guide

Table Of Contents
Appendix
202 of 218
netflowElement.1005.enterpriseid = 1916
netflowElement.1005.id = 1005
netflowElement.1005.termid = extr.nacProfile
netflowElement.1006.enterpriseid = 1916
netflowElement.1006.id = 1006
netflowElement.1006.termid = extr.detailedLocation
netflowElement.1007.enterpriseid = 1916
netflowElement.1007.id = 1007
netflowElement.1007.termid = extr.oneSidedFlow
netflowElement.1008.enterpriseid = 1916
netflowElement.1008.id = 1008
netflowElement.1008.termid = extr.clientLocation
netflowElement.1009.enterpriseid = 1916
netflowElement.1009.id = 1009
netflowElement.1009.termid = extr.serverLocation
netflowElement.1010.enterpriseid = 1916
netflowElement.1010.id = 1010
netflowElement.1010.termid = extr.metaData
$SPLUNK/etc/apps/splunk_app_
stream/default/vocabulary/extreme.xml
<?xml version="1.0" encoding="UTF-8"?>
<CmConfig xmlns="http://purl.org/cloudmeter/config" version="7.1.1">
<Vocabulary id="extr">
<Locked>true</Locked>
<Name>ExtremeAnalytics Netflow Protocol Vocabulary</Name>
<Term id="extr.appName">
<Type>string</Type>
<Comment>Application Name - ExtremeAnalytics</Comment>
</Term>
<Term id="extr.userName">
<Type>string</Type>
<Comment>User Name - ExtremeAnalytics</Comment>
</Term>
<Term id="extr.appGroupName">
<Type>string</Type>
<Comment>Application Group Name - ExtremeAnalytics</Comment>
</Term>
<Term id="extr.srcHostName">
<Type>string</Type>
<Comment>Source Host Name - ExtremeAnalytics</Comment>