Getting Data In

monitor cisco switch environment

kschoeck
Engager

I would like to monitor about 15 cisco devicces on my network. 3 ASA devices, 4 l3 switches and the rest are L2 switches. what option/product is best?

Tags (4)

Baba_19
New Member

hello, we are the world best software provider if you facing any problem so we stand for your help and solve your any problems.
TP-Link Router Support

0 Karma

sdaniels
Splunk Employee
Splunk Employee

Ideally you could have syslong-NG or rsyslog output that data to a file and Splunk would monitor that way. However, if that's not available you would have a forwarder installed and have the syslog data come in from your network devices via UDP or TCP.

http://docs.splunk.com/Documentation/Splunk/latest/Data/SyslogUDP

This is a great app to look at as well -> http://splunk-base.splunk.com/apps/22300/cisco-security-suite. Dashboard views, reports, field extractions and content for your Cisco devices.

splunkfly
New Member

I'm getting syslog messages from switches into /var/logs/syslog. and on top of it I have also installed universalforwarder on syslog-ng server.

I need to know the process to seperate the syslogs for each switch and router and send the data to cisco networks app on the splunk.

Please guild me

0 Karma

gooza
Communicator

have you tried collecting the syslogs and using

splunk cisco-security-suite

0 Karma

splunkfly
New Member

I'm getting syslog messages from switches into /var/logs/syslog. and on top of it I have also installed universalforwarder on syslog-ng server.

I need to know the process to seperate the syslogs for each switch and router and send the data to cisco networks app on the splunk.

Please guild me

0 Karma
Get Updates on the Splunk Community!

Build Your First SPL2 App!

Watch the recording now!.Do you want to SPL™, too? SPL2, Splunk's next-generation data search and preparation ...

Exporting Splunk Apps

Join us on Monday, October 21 at 11 am PT | 2 pm ET!With the app export functionality, app developers and ...

[Coming Soon] Splunk Observability Cloud - Enhanced navigation with a modern look and ...

We are excited to introduce our enhanced UI that brings together AppDynamics and Splunk Observability. This is ...