Security

Splunking OpenVPN Server Logs

sajbutler
Path Finder

Hi All

I've started ingest OpenVPN server logs. I've done a preliminary search on apps, answers and the Net at large and cannot find anything (field extractions, log structure). Has anyone had any experience in splunking/extracting openVPN logs that they would care to share with me?

Tags (1)

bradp1234
Path Finder

Take a look at the TA-pfsense app. It has the extractions for openvpn logs.

https://apps.splunk.com/app/1527/

0 Karma

meoo
Explorer

It doesn't work quiet well however. I tried and the extractions do not happen as expected.

0 Karma

bradp1234
Path Finder

You may have to modify the app to work for your use case.

0 Karma

krisrmal
Engager

@bradp1234 , @meoo @sajbutler 

 

Did anyone managed to get OpenVPN logs to Splunk? If so, can anyone help on this?

Tags (1)
0 Karma

mhersaratikyan
Engager

Try to send them via syslog

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Mile High Learning with Splunk University, Denver, Colorado

If Denver is known for its mile-high elevation, Splunk University is about to raise the bar on technical ...

IT Service Intelligence 5.0 Series: Your Guide to the June Launch

We are excited to announce the June release of Splunk IT Service Intelligence (ITSI) 5.0. This update ...

Agent Mode Engaged! Enchaining Agentic Operations with Splunk AI Assistant 2.0

    Are you ready to transform how your team handles complex data requests? We invite you to our upcoming ...