Configuring Cisco IOS to log to the syslog service of the OSSIM server

When you configure the Cisco router operating system integration to send log data to the OSSIM syslog service, you can use the Cisco IOS plugin to translate the raw log data into normalized events for analysis. The vendor link is available at https://supportforums.cisco.com/document/24661/how-configure-logging-cisco-ios#Configuration_Overview.

Before you configure the integration, you must have the following:

  • The IP address of the OSSIM server
  • Router configuration to obtain the time from any NTP server

To configure Cisco IOS to send log data to the OSSIM syslog service, perform the following steps:

  1. Enter the configuration mode:
      router#conf t
  1. Configure the host to ...

Get Industrial Cybersecurity now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.