All Apps and Add-ons

Why is Splunk for Palo Alto Networks app not displaying traffic dashboard?

rodgerkrau
New Member

Every dashboard working but Traffic dashboard.."Search is waiting for input..." Splunk 6.1 and PA app 4.1.1

0 Karma

btorresgil
Builder

Hello,

All the dashboards work off the same datamodel, so if one dashboard is showing data but the others aren't, it's probably because the firewall isn't sending the other kinds of syslogs (like threat, config, system, etc). You can use the troubleshooting guide to try and send config logs and see if they show up in the config dashboard:

Splunk for Palo Alto Networks App - Troubleshooting guide:
https://live.paloaltonetworks.com/docs/DOC-6593

0 Karma

rodgerkrau
New Member

confirmed all in the troubleshooting guide is correct.. however, I get data with this search, index=pan_logs but not this one: index=pan_logs sourcetype=config

0 Karma
Get Updates on the Splunk Community!

Index This | I am a number, but when you add ‘G’ to me, I go away. What number am I?

March 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...

What’s New in Splunk App for PCI Compliance 5.3.1?

The Splunk App for PCI Compliance allows customers to extend the power of their existing Splunk solution with ...

Extending Observability Content to Splunk Cloud

Register to join us !   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to ...