Installation

sample cisco log data with sourcetype= cisco_wsa_squid

jcorcoran508
Path Finder

Greetings:

 

In search of Cisco sampling logs with the sourctype=cisco_wsa_squid to  sharpen my spl .

Can any one point me to a location of such log for download ?

Labels (1)
Tags (1)
0 Karma

venkatasri
SplunkTrust
SplunkTrust

Hi @jcorcoran508 

is this what you are looking for ? sourcetypes are here,

Source types for the Splunk Add-on for Cisco WSA - Splunk Documentation

if your admin allowed your role to do a index=* search you could try something like this to find the logs.

index=* sourcetype=cisco:wsa:squid*

 If you aware of index just replace it.

---

An upvote would be appreciated if this reply helps! 

0 Karma

jcorcoran508
Path Finder

Thanks for the tip.   

No I was actually looking for sample cisco logs to upload in my test splunk box, so I can run some SPL against it.   

can you help ?

0 Karma

jcorcoran508
Path Finder

I didn't find what I was looking for. However I found this website that offer datasets / logs

https://www.kaggle.com/

 

0 Karma
Get Updates on the Splunk Community!

Extending Observability Content to Splunk Cloud

Watch Now!   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to leverage ...

More Control Over Your Monitoring Costs with Archived Metrics!

What if there was a way you could keep all the metrics data you need while saving on storage costs?This is now ...

New in Observability Cloud - Explicit Bucket Histograms

Splunk introduces native support for histograms as a metric data type within Observability Cloud with Explicit ...