Hello Splunk Community, I have installed the Cloudflare for Splunk app on Splunk Cloud and have successfully configured Logpush to send logs from Cloudflare to Splunk following the official instructions. I have verified that the logs are arriving correctly in Splunk using search queries like: https://splunkbase.splunk.com/app/4501 index=cloudflare | head 10 I can see the logs in the search results, confirming that data ingestion is working. However, when I open the Cloudflare for Splunk dashboards, they are empty, showing "No results found". I've checked the following topics. Checked Data Arrival - Logs are arriving correctly in Splunk (index=cloudflare contains data). Confirmed Sourcetype - The logs are being assigned the expected sourcetype (cloudflare:access, cloudflare:network, etc.). Verified Time Range - Made sure the dashboards are set to a broad time range (Last 24 hours or All Time). Checked Permissions - Ensured that the user running the dashboards has access to the cloudflare index. Examined Dashboard Searches - Manually ran the searches used in the Cloudflare dashboards, but they returned no results. Questions: Has anyone faced this issue before? Are there any known fixes or configuration adjustments required for the Cloudflare for Splunk dashboards to populate correctly? Do I need to manually adjust field extractions or event types for the dashboards to work? I appreciate any guidance or recommendations you can provide. Thanks in advance for your help! Best regards,
... View more