Hi @rahul2gupta To understand whether you already ingested azure firewall logs to splunk, please check your sourcetypes and see if there are any sourcetypes with azure in them.
To integrate Azure firewall logs to splunk, please check these apps:
https://splunkbase.splunk.com/app/3110/
https://splunkbase.splunk.com/app/3534/
this one is too good, with screenshots:
https://medium.com/@maarten.goet/microsoft-azure-sentinel-not-your-daddys-splunk-3775bda28f39