cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
798
Views
0
Helpful
2
Replies

Cisco Defense Orchestrator Export to SIEM

kate-robson
Level 1
Level 1

Hi,

Is it possible to export CDO logs to Microsoft Sentinel via syslog or API?

Thanks,

 

 

2 Replies 2

Mark Elsen
Hall of Fame
Hall of Fame

 

  - Checkout : https://www.cisco.com/c/en/us/td/docs/security/cdo/multicloud-defense/user-guide/cisco-multicloud-defense-user-guide/log-forwarding-destinations-siems.html

 M.



-- Let everything happen to you  
       Beauty and terror
      Just keep going    
       No feeling is final
Reiner Maria Rilke (1899)

Marvin Rhoads
Hall of Fame
Hall of Fame

Cisco Defense Orchestrator (CDO) logs are only available natively in the CDO platform itself.

That's distinct from logs of managed devices (ASA, FTD etc.) which can be sent to any reachable log repository via the device's syslog settings.

The Cisco Multicloud Defense (CMD) product mentioned by @Mark Elsen is separate from CDO per se - it just launches from the CDO landing page into a completely separate product (at this time).

Review Cisco Networking for a $25 gift card