cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
259
Views
0
Helpful
2
Replies

Cisco Defense Orchestrator Export to SIEM

kate-robson
Level 1
Level 1

Hi,

Is it possible to export CDO logs to Microsoft Sentinel via syslog or API?

Thanks,

 

 

2 Replies 2

marce1000
VIP
VIP

 

  - Checkout : https://www.cisco.com/c/en/us/td/docs/security/cdo/multicloud-defense/user-guide/cisco-multicloud-defense-user-guide/log-forwarding-destinations-siems.html

 M.



-- Each morning when I wake up and look into the mirror I always say ' Why am I so brilliant ? '
    When the mirror will then always repond to me with ' The only thing that exceeds your brilliance is your beauty! '

Marvin Rhoads
Hall of Fame
Hall of Fame

Cisco Defense Orchestrator (CDO) logs are only available natively in the CDO platform itself.

That's distinct from logs of managed devices (ASA, FTD etc.) which can be sent to any reachable log repository via the device's syslog settings.

The Cisco Multicloud Defense (CMD) product mentioned by @marce1000 is separate from CDO per se - it just launches from the CDO landing page into a completely separate product (at this time).

Review Cisco Networking for a $25 gift card