Fortigate - Values with "=" are getting splited even without an existing extractor for it

Hello,

That will happen when not using the input to ingest your logs.

Yes, our inputs are Raw/Plaintext UDP and we use ports above 1024.

1 Like