So I have downloaded and Installed both the "Cisco IOS" application as well as the "Technology Add-on for Cisco IOS". The application now appears within my Splunk instance. However, whenever I access the application, I receive the following error as the Dashboard loads "Splunk encountered the following unknown module: "SideviewUtils", The view may not load properly.
The Dashboard is empty... I'm new to Splunk, so tell me what I did wrong.
for those who are looking for initial (basic) cisco configuration:
1- open port 514 in firewall if u have.
2- configure in cisco:
logging trap (trap level)
logging host (Splunk Server) transport (tcp |> udp) port (514)
logging on
3- In Splunk's Data Inputs: Add a TCP or UDP type (I use TCP) and ensure that it's setup for 514 and the sourcetype is syslog (i used cisco_syslog)
I hope it helps 🙂
Welcome to Splunk!
There is an app called Sideview Utils. Ensure you have that installed for the application you are trying to use. In this case just the standard Sideview Utils.