- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
wahluf
Explorer
10-28-2020
07:08 PM
i am a beginner in using splunk. I'm doing research on log traffic from Palo Alto. inside i upload data to splunk. what is the most appropriate sourcetype for me to choose?
1 Solution
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
isoutamo

SplunkTrust
10-28-2020
11:41 PM
Hi
you are probably using this app: Palo Alto Networks App for Splunk and add-on Palo Alto Networks Add-on for Splunk for getting logs in. Just look from App's instruction how to use it. I think that most sourcetypes are named like pan:xxx
r. Ismo
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
isoutamo

SplunkTrust
10-28-2020
11:41 PM
Hi
you are probably using this app: Palo Alto Networks App for Splunk and add-on Palo Alto Networks Add-on for Splunk for getting logs in. Just look from App's instruction how to use it. I think that most sourcetypes are named like pan:xxx
r. Ismo
