All Apps and Add-ons

Newbie, question Integration with Cisco Meraki output

petergscott
New Member

I have a web based Cisco Meraki Network , and within the setup is the option to send data to
a Syslog Server. I basically need to add an ip address. Where do I get the address from. I am using a 60 day licence for Splunk, but will sign up for an account following POC.

Can anyone point me in the right direction , please.

Tags (1)
0 Karma

lguinn2
Legend

If you want to send the syslog data to Splunk, just use the IP address of the server where you have Splunk installed.

Within Splunk, set up a UDP input that listens on the port (probably 514).

Note that you will need to make sure that Splunk can access port 514, which is a privileged port on many systems.

The above solution is adequate for a POC, but you will want to architect things a little differently for the long haul.

Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...