All Apps and Add-ons

Cisco Meraki Presence Modular Input

swatson
New Member

We are running Splunk Cloud, and the Cloud operations team created a HTTP Event Collector with a new token. On the Meraki dashboard, I enter the URL from Splunk Cloud (https://http-inputs-oxfordinc.splunkcloud.com/services/collector/event) and I enter the HEC "token" as the Meraki secret. It won't validate, giving a response other than 200 message.

My guess is this is an issue that the Meraki "secret" and "validator" are not tied to the HEC token in any way, but I can't find any details on how this is supposed to be accomplished. Any help is appreciated.

0 Karma

swatson
New Member

I think I understand part of the issue now. The Meraki_TA isn't working in our Splunk Cloud instance, even though it is supposedly supported. Thanks!

0 Karma

Damien_Dallimor
Ultra Champion

HEC has absolutely nothing to do with the Cisco Meraki Setup.

Validator and Secret can be obtained from your Meraki admin.

Cisco Meraki Docs

0 Karma
Get Updates on the Splunk Community!

Observability Newsletter Highlights | March 2023

 March 2023 | Check out the latest and greatestSplunk APM's New Tag Filter ExperienceSplunk APM has updated ...

Security Newsletter Updates | March 2023

 March 2023 | Check out the latest and greatestUnify Your Security Operations with Splunk Mission Control The ...

Platform Newsletter Highlights | March 2023

 March 2023 | Check out the latest and greatestIntroducing Splunk Edge Processor, simplified data ...