Hi everyone, I'm new to Cisco Meraki and currently working with several Meraki network devices. I've observed that log collection within the Meraki dashboard is inconsistent. Specifically, during periods of high event activity, Meraki reports that too many events occurred in a short span, resulting in incomplete log capture. We’ve ruled out any underlying network issues, so I’m exploring the option of integrating a dedicated syslog server to ensure reliable and complete log collection. I’d appreciate insights on the following: Is it better to use an on-premises or cloud-based syslog server for Meraki log collection? What are the pros and cons of each approach? What syslog solutions are others using in their environments (e.g., Syslog-ng, Graylog, Splunk, LogRhythm, ELK Stack, etc.)? If cloud-based, which providers are recommended (e.g., Splunk Cloud, Logz.io, Datadog, Papertrail, etc.)? My primary goal is to resolve the issue of incomplete log collection from Meraki devices. If I choose cloud based, what complication i can encounter?
... View more