All Apps and Add-ons

Capture logs from Cisco Security Cloud Controll

pmilburn
Observer

Evaulating Splunk to Capture logs from our Cisco Security cloud along with our aother cisco security products. I am having issues in obaining the required configurations required within the Cisco Cloud Security App within SPlunk.

I have seen the video from Cisco which shows a URL but not how to get the API Key and Password. I have looked into this and I think I need a subscription to Cisco Secure Access (not entirley sure). 

Is there anyone who has done this and can send some pointers / info my way to help.

 

Thanks,

Labels (1)
0 Karma

livehybrid
SplunkTrust
SplunkTrust

Hi @pmilburn 

Have you seen this walkthrough guide on how to get started setting this up? If not I'd definately recommend reading this as i think it will answer your questions!

https://developer.cisco.com/docs/cloud-security/cisco-cloud-security-app-for-splunk/#get-started--se...

Regarding your question about needing a subscription - the docs confirm that:

A subscription for at least one of the Cisco Cloud Security products: Cisco Secure Access, Cisco Umbrella, Cisco Investigate, or Cisco Cloudlock.

Do you have a subscription for one of these?

🌟 Did this answer help you? If so, please consider:

  • Adding karma to show it was useful
  • Marking it as the solution if it resolved your issue
  • Commenting if you need any clarification

Your feedback encourages the volunteers in this community to continue contributing

0 Karma
Get Updates on the Splunk Community!

Observe and Secure All Apps with Splunk

  Join Us for Our Next Tech Talk: Observe and Secure All Apps with SplunkAs organizations continue to innovate ...

Splunk Decoded: Business Transactions vs Business IQ

It’s the morning of Black Friday, and your e-commerce site is handling 10x normal traffic. Orders are flowing, ...

Fastest way to demo Observability

I’ve been having a lot of fun learning about Kubernetes and Observability. I set myself an interesting ...