Hi,
Is it possible to get Cisco eStreamer data processed by the Splunk Universal forwarder?
Is there any step-by-step guide?
Many thanks
@mfamd, You can check Cisco eStreamer app from @douglashurd on Splunkbase.
https://splunkbase.splunk.com/apps/#/author/douglashurd
Documentation as listed on the App's details: https://supportforums.cisco.com/t5/sourcefire-documents/estreamer-encore-operations-guide-3-0/ta-p/3...
You can also refer to .conf Session on Cisco and Splunk
for quick insight to this: http://conf.splunk.com/sessions/2017-sessions.html#search=cisco&
@mfamd, is your issue resolved?