Hello there. Consider using Splunk Connect for Syslog. It is a tool that will allow very easy implementation of datasources like Cisco through syslog-ng. It will ultimately write to HTTP Event Collector in Splunk. See this link for additional information. I hope this helps because I have been having great success with this tool!
... View more