How do you configure the F5 so all the necessary logs go to splunk? This app has no README.
Have your F5 adminstrator add one of your forwarders or Indexer as a syslog receipent. On your indexer configure your Data Inputs from Manager » Data inputs » TCP » Add new. From a forwarder edit your inputs.conf and outputs.conf.
http://support.f5.com/kb/en-us/solutions/public/8000/200/sol8260.html
Hope this helps.