I have an environment that is already using both Cisco Networks Add-on for Splunk Enterprise and the Cisco Security Suite, their respective Technology Add-ons configured for different ports to organize the extraction and source-type.
I now need to add NetFlow data to the mix, I'm not seeing an add-on for the Cisco Security Suite in support of this data, nor a mention of it in Cisco Networks Add-on for Splunk Enterprise documentation. Are either capable of this data or do I need to install another TA/app in support of this?
same here, i have netflow and dont know how to visualize it...