I have few firewall logs coming into the Splunk.
I need to extract the data from Splunk to get the allowed and blocked events count separately for each firewall.
Could you please help me with the search for this?
**Firewall Allowed_count Blocked_count
A 98312 4565
B 123 221
C 72333 76876**