Skip to content

Installation overview for the Splunk Add-on for Cisco ISE

Complete the following steps to install and configure this add-on on your supported platform:

  1. Install the add-on for Cisco ISE.
  2. Configure data collection using Splunk Connect for Syslog to receive the log data from Cisco ISE.
  3. Configure Cisco ISE to send the log files that you need in a way that can be accessed by Splunk Enterprise.
  4. Verify your configurations using an test index first, to ensure your data is flowing to Splunk Enterprise and is source typed as you expect. Troubleshoot, if necessary, before switching to your production index.