Hello,
We recently migrated from Splunk On-prem to Cloud.
We are using Palo Alto Firewall (SaaS version) and we want to forward the syslog to Splunk Cloud.
What is the best way to achieve it?
Palo Alto does not support forwarding syslog to an external source
Thanks!
Hello,
you have to order an addition:
https://docs.paloaltonetworks.com/cloud-services/apps/log-forwarding/log-forwarding-app-getting-star...
to forward Cloud Logs to Splunk.
Kind regards