Installation

sample cisco log data with sourcetype= cisco_wsa_squid

jcorcoran508
Path Finder

Greetings:

 

In search of Cisco sampling logs with the sourctype=cisco_wsa_squid to  sharpen my spl .

Can any one point me to a location of such log for download ?

Labels (1)
Tags (1)
0 Karma

venkatasri
SplunkTrust
SplunkTrust

Hi @jcorcoran508 

is this what you are looking for ? sourcetypes are here,

Source types for the Splunk Add-on for Cisco WSA - Splunk Documentation

if your admin allowed your role to do a index=* search you could try something like this to find the logs.

index=* sourcetype=cisco:wsa:squid*

 If you aware of index just replace it.

---

An upvote would be appreciated if this reply helps! 

0 Karma

jcorcoran508
Path Finder

Thanks for the tip.   

No I was actually looking for sample cisco logs to upload in my test splunk box, so I can run some SPL against it.   

can you help ?

0 Karma

jcorcoran508
Path Finder

I didn't find what I was looking for. However I found this website that offer datasets / logs

https://www.kaggle.com/

 

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...

Design, Compete, Win: Submit Your Best Splunk Dashboards for a .conf26 Pass

Hello Splunkers,  We’re excited to kick off a Splunk Dashboard contest! We know that dashboards are a primary ...

May 2026 Splunk Expert Sessions: Security & Observability

Level Up Your Operations: May 2026 Splunk Expert Sessions Whether you are refining your security posture or ...