I am having the same issue. Here is a copy of my inputs.conf on the server.
[monitor:///splunkapp/centrallog/hostasa]
index = sfsq-uiso
sourcetype = cisco_asa
But nothing is showing up in the Splunk Cisco ASA
Your help is very much appreciated.
Thank you
Nadim
... View more