All Apps and Add-ons

Splunk integration with Palo

lambap
New Member

Hello Splunk Community,

We are implementing splunk to integrate with palo alto firewalls. I have come across the following issues on Palo Alto add-on 6.0.2.

  1. Traffic Menu Item/drop down: we can see traffic data when running a splunk query but don't see a drop down for traffic and other day withing the Palo Alto app. Looking at some older deployments on youtube, that seems to be available. Can we get the same option in the newer version?

  2. Getting CPU/Palo Health data: How do we query that in splunk, is that part of syslog or snmp? Couldn't find an option to view CPU and other heath data in the add-on

  3. Query Palo Alto for live data: We need a dashboard that update every 5 minutes, that can grab running statistics. For example, NAT utilization, active clients connected to Global protect, etc. Basically have splunk run some commands in Palo to grab that data. Is there some documentation on how to achieve that?

0 Karma
Get Updates on the Splunk Community!

Introducing the 2024 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...

Introducing the 2024 Splunk MVPs!

We are excited to announce the 2024 cohort of the Splunk MVP program. Splunk MVPs are passionate members of ...

Splunk Custom Visualizations App End of Life

The Splunk Custom Visualizations apps End of Life for SimpleXML will reach end of support on Dec 21, 2024, ...