All Apps and Add-ons

capture network traffic on cisco switch

malshibani5529
Engager

HI

Can i setup  Splunk for continues  traffic capture from cisco switch , i need to collect  capture network traffic for 30 day  period ,Any article's or step's on how to do that.

 

thanks

inventsekar
SplunkTrust
SplunkTrust

Hi @malshibani5529 

Can i setup  Splunk for continues  traffic capture from Cisco switch /// Yes, Sure you can setup.

i need to collect  capture network traffic for 30 day  period // yes, its possible, its simple.

 

Any article's or step's on how to do that /// this is a big and long task. you have to plan this step by step. 

1. first you should collect logs from cisco switch (you can search for this. search for "splunk, cisco switch syslog").

2. once data/logs reached splunk indexer, you can create, for 30 days reports/alerts/dashboards, etc.

 

if you ask a specific question, we can troublehsoot that and move forward, one step at a time.

 

Best Regards,

Sekar

PS - Karma points appreciated!

thanks and best regards,
Sekar

PS - If this or any post helped you in any way, pls consider upvoting, thanks for reading !
0 Karma
Get Updates on the Splunk Community!

Detecting Brute Force Account Takeover Fraud with Splunk

This article is the second in a three-part series exploring advanced fraud detection techniques using Splunk. ...

Buttercup Games: Further Dashboarding Techniques (Part 9)

This series of blogs assumes you have already completed the Splunk Enterprise Search Tutorial as it uses the ...

Buttercup Games: Further Dashboarding Techniques (Part 8)

This series of blogs assumes you have already completed the Splunk Enterprise Search Tutorial as it uses the ...