All Apps and Add-ons

Ironport web security not displanying data

ecovert
Engager

I have uploaded all of the log files from my 160S and not seeing them in the app. Is there any think that i can do to test why?

Tags (1)
0 Karma

MarioM
Motivator

Ironport WSA can be several format :

cisco_wsa_w3c

cisco_wsa_squid

cisco_wsa_l4tm

Then you need to assign the correct one as sourcetype to your data inputs.

0 Karma
Get Updates on the Splunk Community!

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Your Voice Matters! Help Us Shape the New Splunk Lantern Experience

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Building Momentum: Splunk Developer Program at .conf25

At Splunk, developers are at the heart of innovation. That’s why this year at .conf25, we officially launched ...