All Apps and Add-ons

Splunk integration with Palo

lambap
New Member

Hello Splunk Community,

We are implementing splunk to integrate with palo alto firewalls. I have come across the following issues on Palo Alto add-on 6.0.2.

  1. Traffic Menu Item/drop down: we can see traffic data when running a splunk query but don't see a drop down for traffic and other day withing the Palo Alto app. Looking at some older deployments on youtube, that seems to be available. Can we get the same option in the newer version?

  2. Getting CPU/Palo Health data: How do we query that in splunk, is that part of syslog or snmp? Couldn't find an option to view CPU and other heath data in the add-on

  3. Query Palo Alto for live data: We need a dashboard that update every 5 minutes, that can grab running statistics. For example, NAT utilization, active clients connected to Global protect, etc. Basically have splunk run some commands in Palo to grab that data. Is there some documentation on how to achieve that?

0 Karma
Get Updates on the Splunk Community!

Index This | Why did the turkey cross the road?

November 2025 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Feel the Splunk Love: Real Stories from Real Customers

Hello Splunk Community,    What’s the best part of hearing how our customers use Splunk? Easy: the positive ...