Skip to content

Strata Logging Service with HTTP Event Collector (HEC)

Send Strata Logging Service logs to Splunk Cloud and Splunk Enterprise with HTTP Event Collector (HEC).

Create Event Collector Token in Splunk for Strata Logging Service:

  1. Create an Event Collector Token in Splunk. See Set up and use HTTP Event Collector in Splunk Web.

    Use these values when creating the token:

    Field Value
    Source type pan:firewall_cloud
  2. Setup HTTP forwarding from Strata Logging Service. Use the instruction in the Forward Logs from Strata Logging Service to an HTTPS Server guide: https://docs.paloaltonetworks.com/strata-logging-service/administration/forward-logs/forward-logs-to-an-https-server.