All Apps and Add-ons

Splunk for Cisco Identity Services (ISE): How to install for existing ISE data?

pentela114
Engager

Can anyone please suggest to install the Splunk for Cisco Identity Services (ISE) for the existing ISE data. Do we need to configure the dashboards with existing one?
https://splunkbase.splunk.com/app/1589/#/details

Thanks Much!!!

0 Karma
1 Solution

adonio
Ultra Champion

Hello there,
dashboards are pre configured in the app. it says it in the link you provided:
"Release Notes

This version of the Splunk App for Cisco ISE only contains dashboards and reports. No data collection is performed. In order to collect data from a Cisco ISE system, install the separate Splunk Add-on for Cisco ISE."
it also has the link for the add-on that is needed to collect the data:
https://splunkbase.splunk.com/app/1915/#/overview
follow the steps on the link you provided and you are on your way to success.
it does seem that this app is a little dated (12/2014), kindly let us know that it works for you and if it does not, what might are the issues you are facing
hope it helps

View solution in original post

0 Karma

adonio
Ultra Champion

Hello there,
dashboards are pre configured in the app. it says it in the link you provided:
"Release Notes

This version of the Splunk App for Cisco ISE only contains dashboards and reports. No data collection is performed. In order to collect data from a Cisco ISE system, install the separate Splunk Add-on for Cisco ISE."
it also has the link for the add-on that is needed to collect the data:
https://splunkbase.splunk.com/app/1915/#/overview
follow the steps on the link you provided and you are on your way to success.
it does seem that this app is a little dated (12/2014), kindly let us know that it works for you and if it does not, what might are the issues you are facing
hope it helps

0 Karma

pentela114
Engager

Hi,

Thanks much for responding on this. Actually am now downloaded the app and editing the dashboards as per our pre-existing data.
Is that possible ryt?

Thanks!!

0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In the last month, the Splunk Threat Research Team (STRT) has had 2 releases of new security content via the ...

Announcing the 1st Round Champion’s Tribute Winners of the Great Resilience Quest

We are happy to announce the 20 lucky questers who are selected to be the first round of Champion's Tribute ...

We’ve Got Education Validation!

Are you feeling it? All the career-boosting benefits of up-skilling with Splunk? It’s not just a feeling, it's ...