cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
663
Views
0
Helpful
5
Replies

Cicso B2B router logs on QRadar SIEM

saif505
Level 1
Level 1

I am looking for the details of which type of logs of CISCO B2B router are logged in QRadar SIEM.

 

Regards,

1 Accepted Solution

Accepted Solutions

Still not enough information, Cisco B2B? What model? What version of software? What are you looking to log from it? Is Syslog enabled today? What SIEM? What do you think would be missing? What are trying to capture?

View solution in original post

5 Replies 5

Huh?  B2B?  What model? I would suspect whatever you can export with syslog which on a Cisco device is typically everything...

https://community.cisco.com/t5/security-knowledge-base/how-to-ask-the-community-for-help/ta-p/3704356

Basically the only information I have is that its Cisco B2B Router I have to identify the gaps in terms of logging level. 

Huh? This is not enough information for anyone to help out unfortunately. Logging gaps in what way?

I am SOC analyst. I have been assigned with the task to identify what are logs that are currently received by QRadar SIEM from log source Cisco B2B router and in actual what types of logs this device generates. Comparing these to identify what are the logging gaps in my SIEM environment and what type of logs are important for me as an analyst to monitor

Still not enough information, Cisco B2B? What model? What version of software? What are you looking to log from it? Is Syslog enabled today? What SIEM? What do you think would be missing? What are trying to capture?