Security Analytics

cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

Cisco CyberSecurity


Welcome to the Security Analytics Board!

Please take a look at our Stealthwatch Information Hub and our Stealthwatch Use Cases.

Forum Posts

Resolved! SNMP OIDs

Dear Cisco Support,  I want to setup the following monitoring : for Modem and SIM card for the following commands :  Sh cell 0/1/0 security (SIM Status = xxx)Sh cell 0/2/0 security (SIM Status = xxx)Sh cell 0/1/0 hardware (Modem Status = xxx)Sh cell ...

Hi all, I did hit a false positive alarm today: a wireless AP was a source of 'suspect data hoarding' from a WLC.I wanted to disable this core event in this case, but not sure what would be the best way to do so. Ideally, I want to disable this event...

Bart G by Level 1
  • 1217 Views
  • 1 replies
  • 0 Helpful votes

Hi all, I have a question about host group configurations and conflicting baseline configuration. If I understand correctly the 'Enable baselining for Hosts in this Group' controls if hosts are baselined individually or if a baseline is taken for the...

Bart G by Level 1
  • 1708 Views
  • 1 replies
  • 0 Helpful votes

We recently notice on our ISR router that an access list was added to our VTY terminal connection lines. The ip addresses were, 94.102.56.181 and 185.158.249.22. We didn't add them that we can remember. In the config we have 2 usernames being "cisco"...

j-corzatt by Level 1
  • 1161 Views
  • 3 replies
  • 0 Helpful votes

I see that the Stealthwatch SMC GUI (7.2) supports MFA via Radius - but looking at ways to limit access to other components such as the CLI on the SMC, as well as the CLI or GUI on the Flow Collectors or Flow Sensors? Does Stealthwatch support the co...

reheindel by Level 1
  • 1711 Views
  • 2 replies
  • 0 Helpful votes

Hi, One of our customer has purchased VM editions of SMC, FC and FS appliances and 25000 flows licenses. We found that we have different models of VM appliances like SMCVE, SMC2000VE and FCVE,FCVE2000. I found that these specs are based on the host c...

Dear CommunityWe're looking for a solution to access to Cognitive Threat Analytics (Stealthwatch Data) from an other Browser, than the Browser used for Cisco Stealthwatch.  Do you have similar situations and maybe a solution for access CTA without th...

ipworxs by Level 1
  • 942 Views
  • 0 replies
  • 0 Helpful votes

December 2: Central Log Management using Cisco Security Analytics and Logging 8am-9:30am PT Cisco Security Analytics and Logging is Cisco’s Central Log Management solution for Network Operations and Security Outcomes. It is delivered both as a cloud ...

November 18: Multicloud security posture and threat management with Stealthwatch Cloud 8am-9:30am PT Cisco Stealthwatch Cloud provides visibility, compliance, threat detection and investigation capabilities across on-premises and cloud environments. ...

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: