All Apps and Add-ons

Splunk Add-on for Cisco UCS: Do you need to create the index and sourcetype for the app to function?

pcuenco
New Member

I can see traffic on the firewall between the 2 hosts but nothing comes up when searching the sourcetype of cisco:ucs

0 Karma

kamlesh_vaghela
SplunkTrust
SplunkTrust

@pcuenco

Can you please confirm sourcetype and index name in Configurations > Tasks??

Can you please try sourcetype=cisco:ucs:*?

https://docs.splunk.com/Documentation/AddOns/released/CiscoUCS/Configureinputs

0 Karma

pcuenco
New Member

I manually created an index (cisco) and a sourcetype (cisco:ucs) and I get 0 events when I search that string.

Cisco UCS Task:
Polling Interval: 300
Source Type: cisco:ucs
Index: cisco

0 Karma
Register for .conf21 Now! Go Vegas or Go Virtual!

How will you .conf21? You decide! Go in-person in Las Vegas, 10/18-10/21, or go online with .conf21 Virtual, 10/19-10/20.