Wednesday, July 22, 2020

SumoLogic - syslog and netflow

We are test driving Sumologic as a replacement for netflow reporting through Solarwinds NPM/NTA. The SE is saying to send syslogs into Sumo as an alternative to netflow. However, with traditional catalyst and nexus switches the syslogging is only messaging on fault notifications and auditing type events. I feel he is assuming all cisco devices report traffic flows to syslog like an ASA or Meraki router\firewall. Am I missing something?



No comments:

Post a Comment