Hello All,
I'm working with Proofpoint logs via Syslog and have have been running the Proofpoint logs on TRACE level for quite some time now. This is ingesting a lot of data into splunk which I think is not required. I switched on the TRACE logging for the Proofpoint TAP, which is no longer required ( as I can use the API).
I'm wondering if there is any benefit in being in this TRACE level, of if I should switch it back to INFO.
Thank you!
JG