Hi everyone, I want to ask about Splunk and Squid proxy server
i have 3 proxies, let say:
IP Proxy1: 192.168.1.10
IP Proxy2: 192.168.2.10
IP Proxy3: 192.168.3.10
I searched the log using: index=squid sourcetype=squid:access and i have results, but it's difficult to determine which results belong to Squid log for proxy1, proxy2, and proxy3.
Is it the Splunk app that is installed on Squid proxy server not logging IP information of the Squid proxy server? Or did i misconfigured the app on the Squid proxy server so the IP server of the proxy not show up?
... View more