Register here (watch on demand). This thread is for the Community Office Hours session on Splunk + Cisco Integrations on Thurs, May 22, 2025 at 1pm PT / 4pm ET.
Ask the experts at Community Office Hours! An ongoing series where technical Splunk experts answer questions and provide how-to guidance on various Splunk product and use case topics.
What can I ask in this AMA?
Please submit your questions at registration. You can also head to the #office-hours user Slack channel to ask questions (request access here).
Pre-submitted questions will be prioritized. After that, we will open the floor up to live Q&A with meeting participants.
Look forward to connecting!
Hi everyone! Here are a few questions from the session (get the full Q&A deck and live recording in the #office-hours Slack channel - request access here) :
Q1:What is the best pattern for syslog data from Cisco devices?
Q2: What is the best way to send data from Cisco switches/firewalls to Splunk?
Q3: How can I view and analyze incidents within Splunk ES using Cisco XDR as a data source?
Other Questions (check the #office-hours Slack channel for responses):