All Apps and Add-ons

Splunk for F5 BIG-IP LTM logging

clarkjk
New Member

WHat logs are needed to produce the necessary inputs for the ltm_log source type? Do I need to specify an irule? Where is it documented? If you just set the syslog setting in the LTM all you get are administrative logs not traffice logs that the ltm_log source type can understand

0 Karma
1 Solution

Brian_Osburn
Builder

Clark - I don't think the F5 Application supports the LTM line yet. I would set up an iRule to determine what you want to log.

This is one thing I'm going to work on when I'm done my current project.

Brian

View solution in original post

gundepalli
Explorer

Any update on this?,any update on this?

0 Karma

Brian_Osburn
Builder

Clark - I don't think the F5 Application supports the LTM line yet. I would set up an iRule to determine what you want to log.

This is one thing I'm going to work on when I'm done my current project.

Brian

Get Updates on the Splunk Community!

.conf24 | Day 0

Hello Splunk Community! My name is Chris, and I'm based in Canberra, Australia's capital, and I travelled for ...

Enhance Security Visibility with Splunk Enterprise Security 7.1 through Threat ...

(view in My Videos)Struggling with alert fatigue, lack of context, and prioritization around security ...

Troubleshooting the OpenTelemetry Collector

  In this tech talk, you’ll learn how to troubleshoot the OpenTelemetry collector - from checking the ...