Hello all,
In our test environment, I've set up Splunk running the Cisco Security Suite App with ASA add-on, as well as the Cisco Networks App with Cisco Networks add on.
We're showing great traffic on our ASA in Cisco Security Suite App, however our Cisco 4507 switch is also appearing in the Cisco Security Suite, rather than the Cisco Networks App.
Has anyone else had this issue?
Globally, I've set inputs to listen on UDP 514 in Spunk. Is there some other configuration setting I need to perform to keep our ASA traffic separate from our IOS devices?
John
... View more