We are running R80 GA and I need send logs to a new splunk server. Looking to see if anyone is doing the same.
I do not sue SPlunk but had issue with the SIEM solution we used. If you use an Opsec object to sent logs to Splunk you will potentially need to downgrade the CA certificate on R80 from Sha 256 to Sha 1 if Splunk doesn't support Sha256 yet
Retrieving data ...