Hello, Thanks for the reply, did a packet capture, After taking a look at the current configuration. I see the Access Points are sending traffic to the Syslog server IP on UDP port 5569 however I am not able to see complete log in splunk, for Ex : Failed connection to SSID on AP during authentication because the auth server rejected the auth request.which I can see in Meraki dashboard but not seeing these kind of alerts in my splunk sys log server. it could be stopper from splunk, please suggest.
... View more