Greetings:
In search of Cisco sampling logs with the sourctype=cisco_wsa_squid to sharpen my spl .
Can any one point me to a location of such log for download ?
is this what you are looking for ? sourcetypes are here,
Source types for the Splunk Add-on for Cisco WSA - Splunk Documentation
if your admin allowed your role to do a index=* search you could try something like this to find the logs.
index=* sourcetype=cisco:wsa:squid*
If you aware of index just replace it.
---
An upvote would be appreciated if this reply helps!
Thanks for the tip.
No I was actually looking for sample cisco logs to upload in my test splunk box, so I can run some SPL against it.
can you help ?
I didn't find what I was looking for. However I found this website that offer datasets / logs