All Apps and Add-ons

Device name on IDS Alerts

HagiSoh
New Member

Good morning,

When a Merakis alert comes from the IDS module, it does not appear which device is reporting the alert.

If Client have a lot of Merakis and organizations it's so difficult identify the device involved and is huge waste of time for the analysts.

We think the problem is on API call against IDS module. In other modules the call add the request of the device name but when is for IDS module not it is.

Any solution?

Splunk Add-on for Cisco Meraki  

Labels (3)
0 Karma
Get Updates on the Splunk Community!

Prove Your Splunk Prowess at .conf25—No Prereqs Required!

Your Next Big Security Credential: No Prerequisites Needed We know you’ve got the skills, and now, earning the ...

Splunk Observability Cloud's AI Assistant in Action Series: Observability as Code

This is the sixth post in the Splunk Observability Cloud’s AI Assistant in Action series that digs into how to ...

Splunk Answers Content Calendar, July Edition I

Hello Community! Welcome to another month of Community Content Calendar series! For the month of July, we will ...