<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Is there an example transforms for Splunk for Cisco Firewalls app? in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/Is-there-an-example-transforms-for-Splunk-for-Cisco-Firewalls/m-p/26829#M96660</link>
    <description>&lt;P&gt;Of the three transforms, I did manage to "fix" two of them while working on a solution for my environment for this problem: &lt;A href="http://splunk-base.splunk.com/answers/8006/cisco-app-pix-inbound-vs-outbound"&gt;http://splunk-base.splunk.com/answers/8006/cisco-app-pix-inbound-vs-outbound&lt;/A&gt;. I have not revisited the other to see if I want to just remove the transform call or find/create a transform to use.&lt;/P&gt;

&lt;P&gt;Thanks.&lt;/P&gt;</description>
    <pubDate>Tue, 11 Jun 2013 16:33:35 GMT</pubDate>
    <dc:creator>awsdcuser</dc:creator>
    <dc:date>2013-06-11T16:33:35Z</dc:date>
    <item>
      <title>Is there an example transforms for Splunk for Cisco Firewalls app?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Is-there-an-example-transforms-for-Splunk-for-Cisco-Firewalls/m-p/26827#M96658</link>
      <description>&lt;P&gt;I have Splunk for Cisco Firewalls app v2.0 installed. It is generating some warning messages in the logs: WARN  SearchOperator:kv - Invalid key-value parser, ignoring it, transform_name='ciscosyslog-src_dom_addr_port_2'; WARN  SearchOperator:kv - Invalid key-value parser, ignoring it, transform_name='ciscosyslog-dst_dom_addr_port_2'; and WARN  SearchOperator:kv - Invalid key-value parser, ignoring it, transform_name='product_static_IDS'. Are there any samples of stanzas (or example transforms.conf) for these transforms?&lt;/P&gt;</description>
      <pubDate>Tue, 07 May 2013 21:18:17 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Is-there-an-example-transforms-for-Splunk-for-Cisco-Firewalls/m-p/26827#M96658</guid>
      <dc:creator>awsdcuser</dc:creator>
      <dc:date>2013-05-07T21:18:17Z</dc:date>
    </item>
    <item>
      <title>Re: Is there an example transforms for Splunk for Cisco Firewalls app?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Is-there-an-example-transforms-for-Splunk-for-Cisco-Firewalls/m-p/26828#M96659</link>
      <description>&lt;P&gt;Looks like there is either two missing transforms in default/transforms.conf or the props.conf should be corrected not to call the two _2 transforms. &lt;/P&gt;

&lt;P&gt;Namely: ciscosyslog-src_dom_addr_port_2, ciscosyslog-dst_dom_addr_port_2&lt;/P&gt;

&lt;P&gt;Perhaps this was a copy/paste error by the developer. For now I'm going to simply remove the transform calls.&lt;/P&gt;</description>
      <pubDate>Mon, 28 Sep 2020 14:04:05 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Is-there-an-example-transforms-for-Splunk-for-Cisco-Firewalls/m-p/26828#M96659</guid>
      <dc:creator>agrant</dc:creator>
      <dc:date>2020-09-28T14:04:05Z</dc:date>
    </item>
    <item>
      <title>Re: Is there an example transforms for Splunk for Cisco Firewalls app?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Is-there-an-example-transforms-for-Splunk-for-Cisco-Firewalls/m-p/26829#M96660</link>
      <description>&lt;P&gt;Of the three transforms, I did manage to "fix" two of them while working on a solution for my environment for this problem: &lt;A href="http://splunk-base.splunk.com/answers/8006/cisco-app-pix-inbound-vs-outbound"&gt;http://splunk-base.splunk.com/answers/8006/cisco-app-pix-inbound-vs-outbound&lt;/A&gt;. I have not revisited the other to see if I want to just remove the transform call or find/create a transform to use.&lt;/P&gt;

&lt;P&gt;Thanks.&lt;/P&gt;</description>
      <pubDate>Tue, 11 Jun 2013 16:33:35 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Is-there-an-example-transforms-for-Splunk-for-Cisco-Firewalls/m-p/26829#M96660</guid>
      <dc:creator>awsdcuser</dc:creator>
      <dc:date>2013-06-11T16:33:35Z</dc:date>
    </item>
  </channel>
</rss>

