Security

Splunk for cisco security

Mike_Spellane
New Member

I installed the splunk for cisco security app, and at first the firewall overview dashboard worked great, but after a couple of hours, it just sits there like it's trying to load the pie charts (denies by source, accepts, etc) but never does. Any thoughts?

0 Karma

Will_Hayes
Splunk Employee
Splunk Employee

Hello, I just posted a fix at: http://www.splunkbase.com/apps/All/4.x/app:Cisco+Firewalls+Add-On

The new dashboards should still allow you to view the information when the event-typer misbehaves. Let me know if you have any issues with this update or have any questions.

Mike_Spellane
New Member

Thanks will. That fixed the issue.

0 Karma

Mike_Spellane
New Member

It runs, climbs to %100 and then reports as done. The only dashboard that populates is the bar graph for Firewall events over time. The others remain blank (denies by source, accepts by source, etc)

0 Karma

Dan
Splunk Employee
Splunk Employee

Yup, I just verified this for the firewall overview dashboard on another instance. I'll try contacting the app developer and get back to you

0 Karma

Dan
Splunk Employee
Splunk Employee

Could you check the jobs manager and see if the searches are running?

0 Karma
Get Updates on the Splunk Community!

.conf24 | Day 0

Hello Splunk Community! My name is Chris, and I'm based in Canberra, Australia's capital, and I travelled for ...

Enhance Security Visibility with Splunk Enterprise Security 7.1 through Threat ...

(view in My Videos)Struggling with alert fatigue, lack of context, and prioritization around security ...

Troubleshooting the OpenTelemetry Collector

  In this tech talk, you’ll learn how to troubleshoot the OpenTelemetry collector - from checking the ...