Hello.
I want to monitor the network traffic in my Company using Splunk. I have configured Splunk to read syslog traffic on various devices, but I believe there's more to it as far as network monitoring is concerned.
I would like to know the step by step process to configure my Juniper routers, switches, and firewalls especially the SPAN/mirror port configuration.
Early response is highly appreciated. I have much regards.
hi @chinuakatchy
Did either of the answers below solve your problem? If so, please resolve this post by approving the one that helped you the most! If your problem is still not solved, keep us updated so that someone else can help ya. Thanks for posting!
In http://docs.splunk.com/Documentation/AddOns/released/Juniper/Setup are the links to Juniper documentation on how to configure syslog.
I have already configured my devices to forward syslog to Splunk. However, I also want Splunk to capture the raw network traffic.
configure it through syslog-ng
I have already configured my devices to forward syslog to Splunk. However, I also want Splunk to capture the raw network traffic.