Purpose
This Technology Add-on (TA) provides comprehensive log parsing, normalization, and field extraction capabilities for ParsGate Firewall devices within Splunk.
The add-on is designed to process and structure all log events generated by ParsGate Firewall, enabling efficient search, correlation, monitoring, reporting, and security analysis. It supports the parsing of firewall traffic logs, security events, system logs, administrative activities, network events, and other log sources produced by the platform.
By transforming raw ParsGate Firewall logs into normalized and searchable fields, this TA helps security analysts, SOC teams, and administrators gain deeper visibility into network activity, improve threat detection, accelerate incident investigation, and enhance operational monitoring across their Splunk environment.
Categories
Firewall, Network Device
Resources
Log in to report this app listing