Skip to content
This repository was archived by the owner on Dec 14, 2024. It is now read-only.

Logs have only sourcetype of pan:log #323

@bsanjeeva22

Description

@bsanjeeva22

We have integrated Pan sources with Splunk via syslog-ng. Until 01/11/24 the sourcetypes the parsing into sourcetypes pan:traffic, pan:threat, pan:system, pan:config was working fine. But, later all logs are found under pan_log.

  • Version of add-on on Indexer used: 7.0.4

Metadata

Metadata

Assignees

Labels

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions