Getting Data In
Highlighted

Sourcetypes Definition with lea_opsec

Splunk Employee
Splunk Employee

If I use lea_opsec to gather Checkpoint informations, I can define a simple data input for that.

But if I get Logevents from multiple Checkpoint Devices via data input, how can I configure and distinguish between different devices as sources?

Cheers,

Christian

Tags (1)
0 Karma
Highlighted

Re: Sourcetypes Definition with lea_opsec

Splunk Employee
Splunk Employee

Will recreate the question, trying to be more specific

View solution in original post

0 Karma