All Apps and Add-ons

Pros and Cons for forwarding logs to Splunk cloud from Palo Alto Firewall v/s Panorama

dmenon
Explorer

Hi All - We are implementing Panorama here and I was wondering if there are any benefit in forwarding logs from Panorama, if the logs are already coming in from firewalls. Are Panorama logs better correlated compared to logs directly coming in from Palo firewalls?

0 Karma

adonio
Ultra Champion

its been a long time sunce i worked with PAN data, however, it seems like they are redundant.
After all, Panorama is the console for PAN
read in detail here:
https://splunk.paloaltonetworks.com/dashboards.html
and here:
https://splunk.paloaltonetworks.com/tune-or-reduce-firewall-logs.html
will recommend to read all the docs all the way through (not only the links)

hope it helps

0 Karma
Get Updates on the Splunk Community!

Detecting Remote Code Executions With the Splunk Threat Research Team

REGISTER NOWRemote code execution (RCE) vulnerabilities pose a significant risk to organizations. If ...

Observability | Use Synthetic Monitoring for Website Metadata Verification

If you are on Splunk Observability Cloud, you may already have Synthetic Monitoringin your observability ...

More Ways To Control Your Costs With Archived Metrics | Register for Tech Talk

Tuesday, May 14, 2024  |  11AM PT / 2PM ET Register to Attend Join us for this Tech Talk and learn how to ...