Ingesting CISCO ASA Logs

Anyone got any good updated links that explains how this can be done?
How updated is this one?


any takes?

I can't speak for the general quality of that blog post, but if it was correct for 5.4 it probably works just as fine for later releases of the stack.