These are the 2 documentations that we followed to ingest Cisco device syslog into our Sentinel instance: https://learn.microsoft.com/en-us/azure/sentinel/forward-syslog-monitor-agenteStreamer eNcore for Sentinel Operations Guide v4.0.9 - Cisco Issue...