National Cyber Warfare Foundation (NCWF)

Firewall and Splunk ESCU Integration at the Cisco Live Melbourne SOC


0 user ratings
2025-12-12 22:39:39
milo
Blue Team (CND)
Cisco Live SOC adapted Splunk ESCU detections for Cisco Secure Firewall syslog. Learn to modify macros and promote EVE events to incidents for enhanced threat visibility and response.

Adam Kilgore

Source: cisco
Source Link: https://blogs.cisco.com/security/splunk-escu-firewall-syslog/


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Blue Team (CND)



Copyright 2012 through 2025 - National Cyber Warfare Foundation - All rights reserved worldwide.