Can Splunk forwarders be installed on network switches to capture data? I have a CISCO network switch from which I need to extract data for monitoring purposes.
I was wondering if I can use Splunk forwarder instead of any network probes
Also is there an app for network devices monitoring espeically for CISCO devices?
Awaiting your response
Nope. Have your switch send syslog data to a syslog server. Then use a splunk forwarder on the syslog server to ingest data into splunk.
Thanks for your response, can you let me know the expected reference hardware and s/w configurations required for the syslog server?So the setup needs to be:
Network devices << Network Probes << Syslog Server << Splunk forwarder << Splunk Indexer Pls confirm Is there any readymade app for reading and dashboarding reports for cisco devices data? Thanks,
This two-part blog post covers techniques for getting data from Cisco switches via SNMP into Splunk: