Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

Cisco CSA


You can integrate a Cisco Security Agent (CSA) server with JSA.

The Cisco CSA DSM accepts events by using syslog, SNMPv1, and SNMPv2. JSA records all configured Cisco CSA alerts.

Configuring Syslog for Cisco CSA

Configuration of your Cisco CSA server to forward events.

Take the following steps to configure your Cisco CSA server to forward events:

  1. Open the Cisco CSA user interface.
  2. Select Events >Alerts.
  3. Click New.

    The Configuration View window is displayed.

  4. Type in values for the following parameters:
    • Name Type a name that you want to assign to your configuration.

    • Description Type a description for the configuration. This step is not a requirement.

  5. From the Send Alerts, select the event set from the list to generate alerts.
  6. Select the SNMP check box.
  7. Type a Community name.

    The Community name that is entered in the CSA user interface must match the Community name that is configured on JSA. This option is only available for the SNMPv2 protocol.

  8. For the Manager IP address parameter, type the IP address of JSA.
  9. Click Save.

    You are now ready to configure the log source in JSA.

Configuring a Log Source

JSA automatically discovers and creates a log source for syslog events from Cisco CSA appliances.

To manually configure a syslog log source for Cisco CSA, take the following configuration steps, which are optional:

  1. Log in to JSA.
  2. Click the Admin tab.
  3. On the navigation menu, click Data Sources.

    The Data Sources pane is displayed.

  4. Click the Log Sources icon.

    The Log Sources window is displayed.

  5. Click Add.

    The Add a log source window is displayed.

  6. In the Log Source Name field, type a name for your log source.
  7. In the Log Source Description field, type a description for the log source.
  8. From the Log Source Type list, select Cisco CSA.
  9. Using the Protocol Configuration list, select Syslog.

    The syslog protocol configuration is displayed.

  10. Configure the following values:

    Table 1: Syslog Parameters



    Log Source Identifier

    Type the IP address or host name for the log source as an identifier for events from your Cisco CSA appliance.

  11. Click Save.
  12. On the Admin tab, click Deploy Changes.

    The configuration is complete.