cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
486
Views
0
Helpful
2
Comments
The API Guy
Cisco Employee
Cisco Employee

You can use the Cisco Cloud Security Add-on for Splunk to bring Secure Access and/or Umbrella logs into Splunk from AWS S3 (from either your own bucket or from a Cisco Managed bucket).

Build 1.0.34 brings:

  • v9 schema log fields.
  • Secure Access Logs (in addition to the previous SIG logs):
    • RAVPN
    • ZTNA
    • IPS (Intrusion)

Please see the following link for installation and configuration guidance. 

Comments
taasai
Cisco Employee
Cisco Employee

Hello, 

It seems the link is unavailable. Could you fix it?

The API Guy
Cisco Employee
Cisco Employee

Absolutely and sorry for the broken link. The correct link to the docs is: https://developer.cisco.com/docs/cloud-security/cisco-cloud-security-add-on-for-splunk/

We will update the post. 

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: