Installation

sample cisco log data with sourcetype= cisco_wsa_squid

jcorcoran508
Path Finder

Greetings:

 

In search of Cisco sampling logs with the sourctype=cisco_wsa_squid to  sharpen my spl .

Can any one point me to a location of such log for download ?

Labels (1)
Tags (1)
0 Karma

venkatasri
SplunkTrust
SplunkTrust

Hi @jcorcoran508 

is this what you are looking for ? sourcetypes are here,

Source types for the Splunk Add-on for Cisco WSA - Splunk Documentation

if your admin allowed your role to do a index=* search you could try something like this to find the logs.

index=* sourcetype=cisco:wsa:squid*

 If you aware of index just replace it.

---

An upvote would be appreciated if this reply helps! 

0 Karma

jcorcoran508
Path Finder

Thanks for the tip.   

No I was actually looking for sample cisco logs to upload in my test splunk box, so I can run some SPL against it.   

can you help ?

0 Karma

jcorcoran508
Path Finder

I didn't find what I was looking for. However I found this website that offer datasets / logs

https://www.kaggle.com/

 

0 Karma
Get Updates on the Splunk Community!

Stay Connected: Your Guide to July Tech Talks, Office Hours, and Webinars!

What are Community Office Hours?Community Office Hours is an interactive 60-minute Zoom series where ...

Updated Data Type Articles, Anniversary Celebrations, and More on Splunk Lantern

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

A Prelude to .conf25: Your Guide to Splunk University

Heading to Boston this September for .conf25? Get a jumpstart by arriving a few days early for Splunk ...