Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Juniper Switches Syslog Parser #2535

Open
marakji-splunk opened this issue Jul 23, 2024 · 2 comments
Open

Juniper Switches Syslog Parser #2535

marakji-splunk opened this issue Jul 23, 2024 · 2 comments
Assignees
Labels
Application core dependency in sc4s enhancement New feature or request

Comments

@marakji-splunk
Copy link

What is the sc4s version?
3.27.0
Is there a pcap available? If so, would you prefer to attach it to this issue or send it to Splunk support?
I can provide this through a support case.
What the vendor name?
Juniper
What's the product name?
Switch
If you're requesting support for a new vendor, do you have any preferences regarding the default index and sourcetype for their events?
Existing vendor
Do you have syslog documentation or a manual for that device??

Feature Request description:
our customer have a large fleet of Juniper Switches, we've got SC4S configured and we're getting the logs into Splunk, but 90% of the logs are coming as nix:syslog. Digging into the "Splunk Add-on for Juniper", it doesn't really do much for switches, it focuses more on firewalls. Please assist.
Do you want to have it for local usage or prepare a github PR?
github PR

@cwadhwani-splunk
Copy link
Collaborator

Hi @marakji-splunk
Could you please create a support case and provide the pcap file?
Thanks.

@cwadhwani-splunk cwadhwani-splunk self-assigned this Jul 29, 2024
@rjha-splunk rjha-splunk added enhancement New feature or request Application core dependency in sc4s labels Jul 31, 2024
@marakji-splunk
Copy link
Author

marakji-splunk commented Aug 5, 2024 via email

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Application core dependency in sc4s enhancement New feature or request
Projects
None yet
Development

No branches or pull requests

3 participants