All Apps and Add-ons

the Fortinet Fortigate App for Splunk is not showing any data

lmjoin
Explorer

Hello,
the Fortinet Fortigate App for Splunk is not showing any data. search command sourcetype=fgt_traffic, or sourcetype=fgt_event, or sourcetype=fgt_utm also showing not data.

Here:- index=fortinet_firewall sourcetype="fortinet:firewall"

Tags (1)
0 Karma

skalliger
Motivator

Hi, is your index getting events at all? Have you tried taking a look into the inputs.conf of the app to see the definitions there?

Skalli

0 Karma

lmjoin
Explorer

Hi, could you please suggest how to know
1) your index getting events at all?
2) Have you tried taking a look into the inputs.conf of the app to see --please share what to check path. I will share.

0 Karma
Get Updates on the Splunk Community!

Webinar Recap | Revolutionizing IT Operations: The Transformative Power of AI and ML ...

The Transformative Power of AI and ML in Enhancing Observability   In the realm of IT operations, the ...

.conf24 | Registration Open!

Hello, hello! I come bearing good news: Registration for .conf24 is now open!   conf is Splunk’s rad annual ...

ICYMI - Check out the latest releases of Splunk Edge Processor

Splunk is pleased to announce the latest enhancements to Splunk Edge Processor.  HEC Receiver authorization ...