Getting Data In

SourceType 'pan_log' not listed when adding new DataInput for PaloAlto

gooon26
New Member

Hi

When i try to configure a new UDP data input in my splunk to work with PaloAlto it only list these source types

Access_combined
apache_error
csv
iis
log4j
log4php
syslog

How can i install the sourcetype 'pan_log'

Best regard

Gonzalo

0 Karma

radam2000
Path Finder

Actually i believe you need to install the paloalto add-on instead of the app

Splunk_TA_paloalto

Now at version 6.1.1 i believe

0 Karma

rgaleone1
Path Finder

Have you installed the Palo Alto App?

0 Karma

matthieulopez
Engager

same problem
do you find an issue?

0 Karma
Get Updates on the Splunk Community!

Extending Observability Content to Splunk Cloud

Watch Now!   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to leverage ...

More Control Over Your Monitoring Costs with Archived Metrics!

What if there was a way you could keep all the metrics data you need while saving on storage costs?This is now ...

New in Observability Cloud - Explicit Bucket Histograms

Splunk introduces native support for histograms as a metric data type within Observability Cloud with Explicit ...