How can we correlate the logs from switches and DHCP to obtain a mapping between the Network Port of the switch and the assigned IP address of the device connected to that network port.
I see that the only common element between these two device sources is the MAC address. However, I’m unable to boil down to the correlation rule that can help me fetch this mapping. Can anyone kindly help me out on this?
This usecase will help network admins (doubling as security admins) to identify the network ports that a device is connected to if a ip address is known
Don't forget, when your helpful posts earn a kudos or get accepted as a solution you can unlock perks and badges. Those aren't the only badges, either. How many can you collect? Click here to learn more.
Community Help Hub
New to the forums or need help finding your way around the forums? There's a whole hub of community resources to help you.