Hi, I also have the same issue as user vqd361. All data is coming in as syslog. I assumed that it was an issue with the format of the latest F5 LTM Tmos firmware 11.6 and the 1.1 version of the app needed fixing. (I must admit though that I haven't had a chance to have a detailed look at the formats yet though).
I'm logged in as the Admin user and I (perhaps wrongly as I'm also new to Splunk) assumed that I would have access to everything.
I've had a look at the roles that are available and I cannot see any F5 specific roles.
Any help would be greatly received.
... View more