We have a requirement to start sending logs from Airwave to Splunk. I see previous discussions in this forum using ClearPass to Splunk. Can we send logs directly from Airwave to Splunk? Any configuration is appreciated.
We could forward logs from Airwave to external syslog server. Navigate to AMP Setup > General> Exteranl logging section to configure.
Thanks for the reply, I will test during the next maintenance window.
What type of data are you trying to correlate? You can configure Airwave to send to an external syslog from the AMP Setup -> General page.
You can integrate Splunk into AirWave using the API so you can lookup a MAC address inside of Splunk and have it show you data from ClearPass, controller syslogs and AirWave.
Hope this helps, Thanks.
I don't suppose you have details on setting up this API integration?
Any suggested starting points?
At Aruba, we believe that the most dynamic customer experiences happen at the Edge. Our mission is to deliver innovative solutions that harness data at the Edge to drive powerful business outcomes.
© Copyright 2021 Hewlett Packard Enterprise Development LPAll Rights Reserved.