All Apps and Add-ons

Splunk for Palo Alto data collection

jboustaoui
Engager

Hello,

I forwarded my palo alto logs to my splunk server.
I can see all logs on the splunk server, but no in the palo alto APP.
How much time the Splunk Palo Alto APP will display the results ? Because right now, and since this morning, all results are "0" or "Waiting for data"

Thank you for your answer.
Best regards,
Jamel

0 Karma
1 Solution

jboustaoui
Engager

I Solved my problem, configure the input UPD with pan_log index diplay.

View solution in original post

0 Karma

jboustaoui
Engager

I Solved my problem, configure the input UPD with pan_log index diplay.

0 Karma
Get Updates on the Splunk Community!

Extending Observability Content to Splunk Cloud

Watch Now!   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to leverage ...

More Control Over Your Monitoring Costs with Archived Metrics!

What if there was a way you could keep all the metrics data you need while saving on storage costs?This is now ...

New in Observability Cloud - Explicit Bucket Histograms

Splunk introduces native support for histograms as a metric data type within Observability Cloud with Explicit ...