Getting Data In

monitor cisco switch environment

kschoeck
Engager

I would like to monitor about 15 cisco devicces on my network. 3 ASA devices, 4 l3 switches and the rest are L2 switches. what option/product is best?

Tags (4)

Baba_19
New Member

hello, we are the world best software provider if you facing any problem so we stand for your help and solve your any problems.
TP-Link Router Support

0 Karma

sdaniels
Splunk Employee
Splunk Employee

Ideally you could have syslong-NG or rsyslog output that data to a file and Splunk would monitor that way. However, if that's not available you would have a forwarder installed and have the syslog data come in from your network devices via UDP or TCP.

http://docs.splunk.com/Documentation/Splunk/latest/Data/SyslogUDP

This is a great app to look at as well -> http://splunk-base.splunk.com/apps/22300/cisco-security-suite. Dashboard views, reports, field extractions and content for your Cisco devices.

splunkfly
New Member

I'm getting syslog messages from switches into /var/logs/syslog. and on top of it I have also installed universalforwarder on syslog-ng server.

I need to know the process to seperate the syslogs for each switch and router and send the data to cisco networks app on the splunk.

Please guild me

0 Karma

gooza
Communicator

have you tried collecting the syslogs and using

splunk cisco-security-suite

0 Karma

splunkfly
New Member

I'm getting syslog messages from switches into /var/logs/syslog. and on top of it I have also installed universalforwarder on syslog-ng server.

I need to know the process to seperate the syslogs for each switch and router and send the data to cisco networks app on the splunk.

Please guild me

0 Karma
Get Updates on the Splunk Community!

Observability Unlocked: Kubernetes Monitoring with Splunk Observability Cloud

 Ready to master Kubernetes and cloud monitoring like the pros? Join Splunk’s Growth Engineering team for an ...

Update Your SOAR Apps for Python 3.13: What Community Developers Need to Know

To Community SOAR App Developers - we're reaching out with an important update regarding Python 3.9's ...

October Community Champions: A Shoutout to Our Contributors!

As October comes to a close, we want to take a moment to celebrate the people who make the Splunk Community ...