-
Notifications
You must be signed in to change notification settings - Fork 111
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Juniper sourcetype #2544
Comments
Hi @n0068702 Thanks. |
Hi @n0068702
Please feel free to reach out to support if you need any further help with the PCAP file. |
Hi @n0068702 |
Hi @n0068702 Could you please confirm if the call is solely for generating the pcap file, or if you need assistance with any other issues as well? This will help the support team prepare accordingly. Note: For now, we just need the pcap file or sample raw logs to proceed with the case. |
Hi @cwadhwani-splunk, I'm the Splunk TSE working with the customer on the support side. SFDC case: 3533537. |
Closing this GitHub issue, due to unavailability of the PCAP file. If not already resolved, please feel free to reopen this case once a support ticket is created with the PCAP file attached. Thanks! |
What is the sc4s version?
version = "3.4.2"
Is there a pcap available? If so, would you prefer to attach it to this issue or send it to Splunk support?
?
What the vendor name?
Juniper
What's the product name?
firewall
If you're requesting support for a new vendor, do you have any preferences regarding the default index and sourcetype for their events?
index = juniper_admin
sourcetypes = juniper:junos:admin
junos:firewall
Do you have syslog documentation or a manual for that device??
Feature Request description:
Need to add these sourcetypes to sc4s vendor
Do you want to have it for local usage or prepare a github PR?
The text was updated successfully, but these errors were encountered: