I have a web based Cisco Meraki Network , and within the setup is the option to send data to
a Syslog Server. I basically need to add an ip address. Where do I get the address from. I am using a 60 day licence for Splunk, but will sign up for an account following POC.
Can anyone point me in the right direction , please.
If you want to send the syslog data to Splunk, just use the IP address of the server where you have Splunk installed.
Within Splunk, set up a UDP input that listens on the port (probably 514).
Note that you will need to make sure that Splunk can access port 514, which is a privileged port on many systems.
The above solution is adequate for a POC, but you will want to architect things a little differently for the long haul.