Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Vaibhav_Parmar
Participant

How to send only IPS logs to Splunk checkpoint app using log collector

I have setup to send logs to splunk using logcollector , I am able to send logs which eating up splunk space/license limit 

FYI ..

SMS config - 

cp_log_export add name name target-server 172.x.x.x target-port x.y.z protocol tcp/udp format splunk read-mode semi-unified 

Now i need to only send IPs logs , does this filtering is possible ?

 

 

 

 

0 Kudos
1 Reply
PhoneBoy
Admin
Admin

0 Kudos