Getting Data In

monitor cisco switch environment

kschoeck
Engager

I would like to monitor about 15 cisco devicces on my network. 3 ASA devices, 4 l3 switches and the rest are L2 switches. what option/product is best?

Tags (4)

Baba_19
New Member

hello, we are the world best software provider if you facing any problem so we stand for your help and solve your any problems.
TP-Link Router Support

0 Karma

sdaniels
Splunk Employee
Splunk Employee

Ideally you could have syslong-NG or rsyslog output that data to a file and Splunk would monitor that way. However, if that's not available you would have a forwarder installed and have the syslog data come in from your network devices via UDP or TCP.

http://docs.splunk.com/Documentation/Splunk/latest/Data/SyslogUDP

This is a great app to look at as well -> http://splunk-base.splunk.com/apps/22300/cisco-security-suite. Dashboard views, reports, field extractions and content for your Cisco devices.

splunkfly
New Member

I'm getting syslog messages from switches into /var/logs/syslog. and on top of it I have also installed universalforwarder on syslog-ng server.

I need to know the process to seperate the syslogs for each switch and router and send the data to cisco networks app on the splunk.

Please guild me

0 Karma

gooza
Communicator

have you tried collecting the syslogs and using

splunk cisco-security-suite

0 Karma

splunkfly
New Member

I'm getting syslog messages from switches into /var/logs/syslog. and on top of it I have also installed universalforwarder on syslog-ng server.

I need to know the process to seperate the syslogs for each switch and router and send the data to cisco networks app on the splunk.

Please guild me

0 Karma
Get Updates on the Splunk Community!

.conf24 | Day 0

Hello Splunk Community! My name is Chris, and I'm based in Canberra, Australia's capital, and I travelled for ...

Enhance Security Visibility with Splunk Enterprise Security 7.1 through Threat ...

 (view in My Videos)Struggling with alert fatigue, lack of context, and prioritization around security ...

Troubleshooting the OpenTelemetry Collector

  In this tech talk, you’ll learn how to troubleshoot the OpenTelemetry collector - from checking the ...