> For the complete documentation index, see [llms.txt](https://docs.blusapphire.io/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.blusapphire.io/log-forwarding/03_log-forwarding-guide/cloud-log-forwarding/cisco/cisco-amp.md).

# Cisco AMP

1. Log in to the Cisco AMP for Endpoints portal as an administrator.
2. Click Accounts > API Credentials.
3. In the API Credentials pane, click New API Credential.
4. In the Application name field, type a name, and then select Read & Write.
5. You must have read & write access to manage event streams on your Cisco AMP for Endpoints platform. If its to fetch, only read access is needed
6. Click Create.
7. From the API Key Details section, copy the values for the 3rd Party API Client ID and the API Key. You need these values to fetch logs.
