Hi Elastic Users and Team.
I managed to install the fleet-server on prem and added the Cisco Fleet Integration to the fleet-server itself.
ELK Stack and also the fleetserver is on one virtual machine.
So my thought was now to tell our networking team to send the Cisco IOS Logs to the FQDN of that ELK Stack Server on Port 9002.
Am I correct with this?
What I am missing?
It seems that there are no logs shipped from that test Cisco Switch into Elasticsearch.
On the Configuration of the Cisco module I have just changed from localhost to the FQDN.
Left the ports as is.
Is there another config to do?
Or where I can check that logs actually?
Thank you for any answers.