Getting Data In

Data collection from HP devices


What would be best way to collect data from HP Devices eg WLC, Routers(HP MSR50-40) and Switches (eg. 10508,3800,5406,5820) with no addon available for HP on splunkbase. Currently we are storing logs as syslogs but if we monitor this, how splunk will parse it ?

0 Karma


If you have the data coming in as syslog then half the work is done. Now you just need to teach Splunk how to parse it.
One way to do that is to save 1,000 or so events in a text file and use the Add Data wizard to load that file. This offers an interactive method to try various settings to see which ones work with your data. Once you find the settings that work, copy them to the props.conf file in the app you created for your HP objects.

If this reply helps you, Karma would be appreciated.
0 Karma
Get Updates on the Splunk Community!

Splunk Security Content for Threat Detection & Response, Q1 Roundup

Join Principal Threat Researcher, Michael Haag, as he walks through:An introduction to the Splunk Threat ...

Splunk Life | Happy Pride Month!

Happy Pride Month, Splunk Community! 🌈 In the United States, as well as many countries around the ...

SplunkTrust | Where Are They Now - Michael Uschmann

The Background Five years ago, Splunk published several videos showcasing members of the SplunkTrust to share ...