Hello, So my problem is that I have to put different "source type" under UDP port 514. Because I have Fortigates, Cisco, Cisco ISE... and all of them uses different "source type". And when I ask is it possible to just add multiple "source types" the sales guy from Splunk gave me these two links: - https://community.splunk.com/t5/Archive/Multiple-sourcetypes-and-listenners-on-the-same-udp-port/m-p/494451 - https://community.splunk.com/t5/Getting-Data-In/How-to-configure-different-sourcetypes-for-udp-port-514/m-p/165772
... View more