Security

Splunking OpenVPN Server Logs

sajbutler
Path Finder

Hi All

I've started ingest OpenVPN server logs. I've done a preliminary search on apps, answers and the Net at large and cannot find anything (field extractions, log structure). Has anyone had any experience in splunking/extracting openVPN logs that they would care to share with me?

Tags (1)

bradp1234
Path Finder

Take a look at the TA-pfsense app. It has the extractions for openvpn logs.

https://apps.splunk.com/app/1527/

0 Karma

meoo
Explorer

It doesn't work quiet well however. I tried and the extractions do not happen as expected.

0 Karma

bradp1234
Path Finder

You may have to modify the app to work for your use case.

0 Karma

krisrmal
Engager

@bradp1234 , @meoo @sajbutler 

 

Did anyone managed to get OpenVPN logs to Splunk? If so, can anyone help on this?

Tags (1)
0 Karma

to4kawa
Ultra Champion
Did you miss .conf21 Virtual?

Good news! The event's keynotes and many of its breakout sessions are now available online, and still totally FREE!