Getting Data In

Splunk Stream with Netflow Data

Crashfry
Path Finder

I have the data coming into the system, I see the Stream addon manipulating the data to look a specific way. Though the issue seems to be with the dashboards do not seem to reflect any of the data. In my situation, I have a heavy forwarder setup to capture netflow data from our firewalls ( so it's acting as a collector ) but the dashboards do not seem to populate with the data from netflow.
I've seen some previous questions but this doesn't seem to be answered in them - anyone else running into this?

Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...