Installation

sample cisco log data with sourcetype= cisco_wsa_squid

jcorcoran508
Path Finder

Greetings:

 

In search of Cisco sampling logs with the sourctype=cisco_wsa_squid to  sharpen my spl .

Can any one point me to a location of such log for download ?

Labels (1)
Tags (1)
0 Karma

venkatasri
SplunkTrust
SplunkTrust

Hi @jcorcoran508 

is this what you are looking for ? sourcetypes are here,

Source types for the Splunk Add-on for Cisco WSA - Splunk Documentation

if your admin allowed your role to do a index=* search you could try something like this to find the logs.

index=* sourcetype=cisco:wsa:squid*

 If you aware of index just replace it.

---

An upvote would be appreciated if this reply helps! 

0 Karma

jcorcoran508
Path Finder

Thanks for the tip.   

No I was actually looking for sample cisco logs to upload in my test splunk box, so I can run some SPL against it.   

can you help ?

0 Karma

jcorcoran508
Path Finder

I didn't find what I was looking for. However I found this website that offer datasets / logs

https://www.kaggle.com/

 

0 Karma
Get Updates on the Splunk Community!

ATTENTION!! We’re MOVING (not really)

Hey, all! In an effort to keep this Slack workspace secure and also to make our new members' experience easy, ...

Splunk Admins: Build a Smarter Stack with These Must-See .conf25 Sessions

  Whether you're running a complex Splunk deployment or just getting your bearings as a new admin, .conf25 ...

AppDynamics Summer Webinars

This summer, our mighty AppDynamics team is cooking up some delicious content on YouTube Live to satiate your ...