Hello,
I have a Sonicwall TZ600 with both Syslog on 514 and log autmation over to an ftp folder on the Splunk server.
I do see data but I am not sure any of it is relevant.
Are there any good, recent, guides for setting up a Sonicwall with Splunk so I can see interface usage and other key metrics?
I'm new to Splunk and am trying to focus on learning through the setup of this device.
Thanks.