Skip to main content
Palo Alto API Inputs Add On app icon

Palo Alto API Inputs Add On

This is a Splunk Technology Add-on (TA) that collects data from Palo Alto Networks devices via API and ingests it into Splunk. It enables ingestion of logs and telemetry from Palo Alto Networks devices via API (instead of just syslog/HEC).Built by Edlyn Liew
splunk product badge

Default Version 1.0.16

December 4, 2025

Compatibility

Splunk Enterprise, Splunk Cloud

Platform Version: 10.1, 10.0, 9.4, 9.3, 9.2, 9.1

Rating
0
(0)

Log in to rate this app

Support
Developer Supported

This is a Splunk Technology Add-on (TA) that collects data from Palo Alto Networks devices via API and ingests it into Splunk. It enables ingestion of logs and telemetry from Palo Alto Networks devices via API (instead of just syslog/HEC). It is designed to complement existing log-based data collection by providing a flexible, API-driven method — ideal for environments where direct syslog forwarding is not feasible, where firewalls are behind NAT or restricted networks, or where additional metadata must be collected beyond traditional log streams. Users can create their own custom API endpoint scripts that require additional-parsing or custom logic with this add-on.