Hi All,
When trying to digest some raw logs from network devices we’re running into the problem where InsightIDR does not natively insert the IP address from which the syslog was sent. I understand that this could be separated out by event source/port but that will be difficult with a multitude of network devices. Is there any way to have the platform insert the IP that the syslog originated from or does anyone know a workaround?
Thank you,