splunk / splunk-connect-for-syslog

Splunk Connect for Syslog
Apache License 2.0
152 stars 107 forks source link

Parser for Aruba SilverPeak events #2529

Closed jzcal8300 closed 3 weeks ago

jzcal8300 commented 1 month ago

What is the sc4s version? 3.27.0 Is there a pcap available? If so, would you prefer to attach it to this issue or send it to Splunk support? Yes, I currently have a case opened for a parser and have uploaded logs to this case. What the vendor name? Aruba What's the product name? SilverPeak If you're requesting support for a new vendor, do you have any preferences regarding the default index and sourcetype for their events? I currently have logs going to silverpeak index with sdwan sourcetype, but the parsing is not right.

Do you have syslog documentation or a manual for that device?? https://www.silver-peak.com/sites/default/files/userdocs/orchestrator_operators_guide.pdf

Feature Request description: Parser for Aruba SilverPeak logs. Do you want to have it for local usage or prepare a github PR? local and public as I would think more might benefit for this parser, but I would like to get my logs parsed correctly as soon as possible.

cwadhwani-splunk commented 1 month ago

Hi @jzcal8300, Thanks for the request. We will pick this issue as soon as possible and we'll keep you posted.

jzcal8300 commented 1 month ago

Sounds good. Let me know if you need the Splunk ticket and I can send that via email. Thanks.

cwadhwani-splunk commented 1 month ago

Yes, please provide me the ticket link.

jzcal8300 commented 1 month ago

What's your splunk email and I can send it over?

cwadhwani-splunk commented 1 month ago

Here is the email: cwadhwani@splunk.com

jzcal8300 commented 1 month ago

I sent the ticket information over yesterday. Thanks!

cwadhwani-splunk commented 1 month ago

Thanks @jzcal8300 We have received the ticket and the attached files.

wojtekzyla commented 3 weeks ago

Solved in #2537