Security

Splunking OpenVPN Server Logs

sajbutler
Path Finder

Hi All

I've started ingest OpenVPN server logs. I've done a preliminary search on apps, answers and the Net at large and cannot find anything (field extractions, log structure). Has anyone had any experience in splunking/extracting openVPN logs that they would care to share with me?

Tags (1)

bradp1234
Path Finder

Take a look at the TA-pfsense app. It has the extractions for openvpn logs.

https://apps.splunk.com/app/1527/

0 Karma

meoo
Explorer

It doesn't work quiet well however. I tried and the extractions do not happen as expected.

0 Karma

bradp1234
Path Finder

You may have to modify the app to work for your use case.

0 Karma

krisrmal
Engager

@bradp1234 , @meoo @sajbutler 

 

Did anyone managed to get OpenVPN logs to Splunk? If so, can anyone help on this?

Tags (1)
0 Karma

mhersaratikyan
Engager

Try to send them via syslog

0 Karma
Get Updates on the Splunk Community!

Finding Based Detections General Availability

Overview  We’ve come a long way, folks, but here in Enterprise Security 8.4 I’m happy to announce Finding ...

Get Your Hands Dirty (and Your Shoes Comfy): The Splunk Experience

Hands-On Learning and Technical Seminars  Sometimes, you just need to see the code. For those looking for a ...

What’s New in Splunk Observability Cloud: January Feature Highlights & Deep Dives

Splunk Observability Cloud continues to evolve, empowering engineering and operations teams with advanced ...