Splunk Cloud Platform

Juniper os syslogs are not parsing and breaking the fields properly in splunk cloud

sekhar463
Path Finder

we are using splunk cloud and getting juniper OS logs as syslogs from Heavy forwarder to splunk cloud.

but in splunk cloud fields are not breaking 

we have installed in juniper addon in splunk cloud 

do this need should there at Heavy forwarder end so that parsing will happen

Labels (1)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

Line breaking and some field extraction is performed by the heavy forwarder so the add-on must be installed there as well.

---
If this reply helps you, Karma would be appreciated.
0 Karma
Get Updates on the Splunk Community!

Data Management Digest – November 2025

  Welcome to the inaugural edition of Data Management Digest! As your trusted partner in data innovation, the ...

Splunk Mobile: Your Brand-New Home Screen

Meet Your New Mobile Hub  Hello Splunk Community!  Staying connected to your data—no matter where you are—is ...

Introducing Value Insights (Beta): Understand the Business Impact your organization ...

Real progress on your strategic priorities starts with knowing the business outcomes your teams are delivering ...