<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Help on  splunk firegen aspps as it is not working or displaying datas in the dashboard,not working with my asa 5520 in splunk firegen for cisco asa in All Apps and Add-ons</title>
    <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Help-on-splunk-firegen-aspps-as-it-is-not-working-or-displaying/m-p/347653#M41978</link>
    <description>&lt;P&gt;Hi, &lt;/P&gt;

&lt;P&gt;Can you confirm that you have the &lt;A href="https://splunkbase.splunk.com/app/1620/"&gt;Splunk Add-on for Cisco ASA&lt;/A&gt; installed? This creates the sourcetype and the parsers that are needed to extract the required fields from the ASA logs. If this is installed correctly, the indexed events should indicate &lt;CODE&gt;cisco:asa&lt;/CODE&gt; as &lt;CODE&gt;sourcetype&lt;/CODE&gt;.&lt;/P&gt;

&lt;P&gt;If the add-on for Cisco ASA is installed, the next step is to confirm that you do have entries in the associated index. When you launch the Firegen for Cisco ASA app for the first time, it will ask you to specify the index used for the ASA logs. Verify that the index used by the FIregen app is the one where the logs are (you can rerun the Setup from the Managed Apps page):&lt;BR /&gt;
&lt;span class="lia-inline-image-display-wrapper" image-alt="alt text"&gt;&lt;img src="https://community.splunk.com/t5/image/serverpage/image-id/4011iB019AD642ED398C4/image-size/large?v=v2&amp;amp;px=999" role="button" title="alt text" alt="alt text" /&gt;&lt;/span&gt;&lt;/P&gt;

&lt;P&gt;This sets the &lt;CODE&gt;cisco_asa_index&lt;/CODE&gt; macro that is used by the FIregen app.&lt;/P&gt;

&lt;P&gt;Please verify these two things and then let us know if it still doesn't work so we can troubleshoot it further.&lt;/P&gt;</description>
    <pubDate>Mon, 18 Dec 2017 15:00:25 GMT</pubDate>
    <dc:creator>adigrio</dc:creator>
    <dc:date>2017-12-18T15:00:25Z</dc:date>
    <item>
      <title>Help on  splunk firegen aspps as it is not working or displaying datas in the dashboard,not working with my asa 5520 in splunk firegen for cisco asa</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Help-on-splunk-firegen-aspps-as-it-is-not-working-or-displaying/m-p/347652#M41977</link>
      <description>&lt;P&gt;Help on  splunk firegen aspps as it is not working or displaying datas in the dashboard,Need help because splunk firegen apps is not working with my asa 5520 for cisco asa&lt;/P&gt;</description>
      <pubDate>Mon, 18 Dec 2017 09:31:23 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Help-on-splunk-firegen-aspps-as-it-is-not-working-or-displaying/m-p/347652#M41977</guid>
      <dc:creator>nbnsplunk121820</dc:creator>
      <dc:date>2017-12-18T09:31:23Z</dc:date>
    </item>
    <item>
      <title>Re: Help on  splunk firegen aspps as it is not working or displaying datas in the dashboard,not working with my asa 5520 in splunk firegen for cisco asa</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Help-on-splunk-firegen-aspps-as-it-is-not-working-or-displaying/m-p/347653#M41978</link>
      <description>&lt;P&gt;Hi, &lt;/P&gt;

&lt;P&gt;Can you confirm that you have the &lt;A href="https://splunkbase.splunk.com/app/1620/"&gt;Splunk Add-on for Cisco ASA&lt;/A&gt; installed? This creates the sourcetype and the parsers that are needed to extract the required fields from the ASA logs. If this is installed correctly, the indexed events should indicate &lt;CODE&gt;cisco:asa&lt;/CODE&gt; as &lt;CODE&gt;sourcetype&lt;/CODE&gt;.&lt;/P&gt;

&lt;P&gt;If the add-on for Cisco ASA is installed, the next step is to confirm that you do have entries in the associated index. When you launch the Firegen for Cisco ASA app for the first time, it will ask you to specify the index used for the ASA logs. Verify that the index used by the FIregen app is the one where the logs are (you can rerun the Setup from the Managed Apps page):&lt;BR /&gt;
&lt;span class="lia-inline-image-display-wrapper" image-alt="alt text"&gt;&lt;img src="https://community.splunk.com/t5/image/serverpage/image-id/4011iB019AD642ED398C4/image-size/large?v=v2&amp;amp;px=999" role="button" title="alt text" alt="alt text" /&gt;&lt;/span&gt;&lt;/P&gt;

&lt;P&gt;This sets the &lt;CODE&gt;cisco_asa_index&lt;/CODE&gt; macro that is used by the FIregen app.&lt;/P&gt;

&lt;P&gt;Please verify these two things and then let us know if it still doesn't work so we can troubleshoot it further.&lt;/P&gt;</description>
      <pubDate>Mon, 18 Dec 2017 15:00:25 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Help-on-splunk-firegen-aspps-as-it-is-not-working-or-displaying/m-p/347653#M41978</guid>
      <dc:creator>adigrio</dc:creator>
      <dc:date>2017-12-18T15:00:25Z</dc:date>
    </item>
  </channel>
</rss>

