I tried follow config http://docs.splunk.com/Documentation/AddOns/released/F5BIGIP/Setup (Configure F5 Logging Profiles for ASM) send log form BIG F5 asm to Splunk. But i only get audit log (udp syslog), no asm attack log.
I checked many time but don't find what problem.
↧