Palo alto logs

@david-vazquez you will not be able to use the Filebeat Palo Alto module. The ingest pipeline is designed to only handle the default Palo Alto log formats. From the example above I can see that your Palo Alto device is configured to send logs using LEEF formatting, which are not supported by the ingest pipeline.

Rob

GitHub YouTube LinkedIn
How to install Elasticsearch & Kibana on Ubuntu
What is the best storage technology for Elasticsearch?

1 Like

Thank you very much for your answer :slight_smile:
I will try with Logstash

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.