cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
758
Views
0
Helpful
0
Replies
Highlighted
Cisco Employee

Consuming Syslog Audit Logs

Hi There

I have a few ASR55XX/ASR5000 boxes (StarOS) that do not support Netflow or Telemetry flows. They do however generate Syslog entries that provide insight into "who" logged in, "what time" the person logging in, "source ip" of the device used to login. Then when the user logs out a similar entry is syslogged. Is it possible for Stealthwatch to capture this data and use it for further actions/outcomes?

If yes how? If not then what is a recommended solution for the same?

Regards

Deepak

0 REPLIES 0