<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Splunk App for Juniper Firewalls in Dashboards &amp; Visualizations</title>
    <link>https://community.splunk.com/t5/Dashboards-Visualizations/Splunk-App-for-Juniper-Firewalls/m-p/41950#M2022</link>
    <description>&lt;P&gt;Hello, I am unable to display the info on the app. I already configured the port 514 and source type as srx_log and set the edit security log info as this:&lt;/P&gt;

&lt;P&gt;root# show &lt;BR /&gt;
mode stream;&lt;BR /&gt;
format sd-syslog;&lt;BR /&gt;
source-address 192.168.1.1;&lt;BR /&gt;
stream splunk {&lt;BR /&gt;
    format sd-syslog;&lt;BR /&gt;
    host {&lt;BR /&gt;
        192.168.1.2;&lt;BR /&gt;
        port 514;&lt;BR /&gt;
    }&lt;BR /&gt;
}&lt;/P&gt;

&lt;P&gt;if I change the source type from srx_log to syslog, results appear under the normal search&lt;/P&gt;

&lt;P&gt;any help will be appreciated&lt;/P&gt;</description>
    <pubDate>Wed, 15 Jan 2014 18:44:35 GMT</pubDate>
    <dc:creator>alejandrous</dc:creator>
    <dc:date>2014-01-15T18:44:35Z</dc:date>
    <item>
      <title>Splunk App for Juniper Firewalls</title>
      <link>https://community.splunk.com/t5/Dashboards-Visualizations/Splunk-App-for-Juniper-Firewalls/m-p/41948#M2020</link>
      <description>&lt;P&gt;Hi Folks,&lt;/P&gt;

&lt;P&gt;Implementing this morning the Splunk App for Juniper Firewalls, I managed that to work simply configuring on Juniper web interface the destination IP, traffic log and configuring Splunk to collect all the logs at the 514 port. OK, it was very easy to do and now I am very happy with that. However, when I accessed the top menu "Remote Access &amp;gt;&amp;gt; VPN Summary", "my surprise part 1", &lt;STRONG&gt;the page was not showing anything&lt;/STRONG&gt;. So, open the the "vpn_summary" view with Splunk's XML editor, "my surprise part two", &lt;STRONG&gt;the code don't have any dashboard definition&lt;/STRONG&gt;. &lt;/P&gt;

&lt;P&gt;Anyone here has had this experience? Any hint on that? Anyone has developed a VPN dashboard from the scratch using the juniper firewall data? I am looking forward to hearing from you guys, thanks a lot! &lt;/P&gt;</description>
      <pubDate>Wed, 21 Aug 2013 15:52:06 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Dashboards-Visualizations/Splunk-App-for-Juniper-Firewalls/m-p/41948#M2020</guid>
      <dc:creator>wagnerbianchi</dc:creator>
      <dc:date>2013-08-21T15:52:06Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk App for Juniper Firewalls</title>
      <link>https://community.splunk.com/t5/Dashboards-Visualizations/Splunk-App-for-Juniper-Firewalls/m-p/41949#M2021</link>
      <description>&lt;P&gt;Hi Wagner,&lt;/P&gt;

&lt;P&gt;I've just had a look at the "Splunk for Juniper Firewalls" App and you're right, there's no content for the VPN Summary dashboard. My suggestion would be to contact the developer listed on the app download page to get more info.&lt;/P&gt;

&lt;P&gt;If you find the rest of the app useful, but don't want to see the 'Remote Access &amp;gt; VPN Summary' menu, you can always remove it from the menu bar by going to:&lt;/P&gt;

&lt;P&gt;Manager &amp;gt; User Interface &amp;gt; Navigation Menus &amp;gt; default&lt;/P&gt;

&lt;P&gt;And remove the following from the XML:&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;&amp;lt;collection label="Remote Access"&amp;gt;
    &amp;lt;view name="vpn_summary"/&amp;gt;
&amp;lt;/collection&amp;gt;
&lt;/CODE&gt;&lt;/PRE&gt;

&lt;P&gt;On the other hand, you can get brave and make your own dashboard &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;

&lt;P&gt;I hope this has been of some help!&lt;/P&gt;</description>
      <pubDate>Fri, 23 Aug 2013 12:08:21 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Dashboards-Visualizations/Splunk-App-for-Juniper-Firewalls/m-p/41949#M2021</guid>
      <dc:creator>rturk</dc:creator>
      <dc:date>2013-08-23T12:08:21Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk App for Juniper Firewalls</title>
      <link>https://community.splunk.com/t5/Dashboards-Visualizations/Splunk-App-for-Juniper-Firewalls/m-p/41950#M2022</link>
      <description>&lt;P&gt;Hello, I am unable to display the info on the app. I already configured the port 514 and source type as srx_log and set the edit security log info as this:&lt;/P&gt;

&lt;P&gt;root# show &lt;BR /&gt;
mode stream;&lt;BR /&gt;
format sd-syslog;&lt;BR /&gt;
source-address 192.168.1.1;&lt;BR /&gt;
stream splunk {&lt;BR /&gt;
    format sd-syslog;&lt;BR /&gt;
    host {&lt;BR /&gt;
        192.168.1.2;&lt;BR /&gt;
        port 514;&lt;BR /&gt;
    }&lt;BR /&gt;
}&lt;/P&gt;

&lt;P&gt;if I change the source type from srx_log to syslog, results appear under the normal search&lt;/P&gt;

&lt;P&gt;any help will be appreciated&lt;/P&gt;</description>
      <pubDate>Wed, 15 Jan 2014 18:44:35 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Dashboards-Visualizations/Splunk-App-for-Juniper-Firewalls/m-p/41950#M2022</guid>
      <dc:creator>alejandrous</dc:creator>
      <dc:date>2014-01-15T18:44:35Z</dc:date>
    </item>
  </channel>
</rss>

