We are receiving the following Meraki sourcetypes, and we wonder if there is any app that presents this set of sourcetypes nicely -
meraki:securityappliances
meraki:devicesavailabilitieschangehistory
meraki:assurancealerts
meraki:licensessubscriptionentitlements
meraki:apirequestshistory
meraki:appliancesdwanstatuses
meraki:licensesoverview
Hello @danielbb ,
We have this 2 add-on which play around Cisco Meraki:
Cisco Meraki Add-on for Splunk : https://splunkbase.splunk.com/app/5580
CCX Add-on for Cisco Meraki: https://splunkbase.splunk.com/app/7365
Cisco Meraki Add-on for Splunk provides comprehensive network observability and security monitoring across your Meraki organizations by collecting data via Cisco Meraki REST APIs and webhooks. It delivers insights into network performance, security, and device health, and includes sample visualizations to help explore the data and create custom dashboards. The add-on also provides Common Information Model (CIM) compatible knowledge to integrate with other Splunk solutions, such as Splunk Enterprise Security and the Splunk App for PCI Compliance. Splunkbase+7Splunkbase+7Splunkbase+7
For a more streamlined and CIM-compliant experience, you might consider the CCX Add-on for Cisco Meraki. This add-on offers enhanced field extraction and CIM compliance for Meraki logs, supporting sourcetypes such as meraki:securityappliances, meraki:devicesavailabilitieschangehistory, and others. It provides additional field extraction and CIM compliance, making it a comprehensive field extraction bundle for Cisco Meraki logs. splunk.github.io+10Splunkbase+10Splunk Docs+10
Both add-ons are compatible with Splunk Enterprise and Splunk Cloud. The Cisco Meraki Add-on for Splunk offers a broader set of features and visualizations, while the CCX Add-on focuses on enhanced CIM compliance and field extraction. Depending on your organization's needs, you can choose the add-on that best fits your requirements.