So I am trying to capture firewall logs from the Cisco SDWAN. The documentation says it uses HSL which is output in a netflow v9 format.
Is anyone collecting Cisco HSLs? Which netflow collector are you using, and is it allowing you to search to see if traffic is being blocked?