Hi, for running Imperva AppSecurity View on SplunkCloud, what index should have Incapsula log data sent to? Also, from dashboards it looks like it's expecting sourcetype=imperva_incapsula_cef, correct? I didn't see any configuration value where I could set the index for this app to use.
Thanks!
HB