Hello,
I forwarded my palo alto logs to my splunk server.
I can see all logs on the splunk server, but no in the palo alto APP.
How much time the Splunk Palo Alto APP will display the results ? Because right now, and since this morning, all results are "0" or "Waiting for data"
Thank you for your answer.
Best regards,
Jamel
I Solved my problem, configure the input UPD with pan_log index diplay.
I Solved my problem, configure the input UPD with pan_log index diplay.