Getting Data In

monitor cisco switch environment

kschoeck
Engager

I would like to monitor about 15 cisco devicces on my network. 3 ASA devices, 4 l3 switches and the rest are L2 switches. what option/product is best?

Tags (4)

Baba_19
New Member

hello, we are the world best software provider if you facing any problem so we stand for your help and solve your any problems.
TP-Link Router Support

0 Karma

sdaniels
Splunk Employee
Splunk Employee

Ideally you could have syslong-NG or rsyslog output that data to a file and Splunk would monitor that way. However, if that's not available you would have a forwarder installed and have the syslog data come in from your network devices via UDP or TCP.

http://docs.splunk.com/Documentation/Splunk/latest/Data/SyslogUDP

This is a great app to look at as well -> http://splunk-base.splunk.com/apps/22300/cisco-security-suite. Dashboard views, reports, field extractions and content for your Cisco devices.

splunkfly
New Member

I'm getting syslog messages from switches into /var/logs/syslog. and on top of it I have also installed universalforwarder on syslog-ng server.

I need to know the process to seperate the syslogs for each switch and router and send the data to cisco networks app on the splunk.

Please guild me

0 Karma

gooza
Communicator

have you tried collecting the syslogs and using

splunk cisco-security-suite

0 Karma

splunkfly
New Member

I'm getting syslog messages from switches into /var/logs/syslog. and on top of it I have also installed universalforwarder on syslog-ng server.

I need to know the process to seperate the syslogs for each switch and router and send the data to cisco networks app on the splunk.

Please guild me

0 Karma
Get Updates on the Splunk Community!

The Splunk Success Framework: Your Guide to Successful Splunk Implementations

Splunk Lantern is a customer success center that provides advice from Splunk experts on valuable data ...

Splunk Training for All: Meet Aspiring Cybersecurity Analyst, Marc Alicea

Splunk Education believes in the value of training and certification in today’s rapidly-changing data-driven ...

Investigate Security and Threat Detection with VirusTotal and Splunk Integration

As security threats and their complexities surge, security analysts deal with increased challenges and ...