All Apps and Add-ons

Splunk MINT: Why are we not getting the correct device mapping in logs?

Joseph_tukuru
New Member

We have just activated Splunk MINT and noticed in the logs that some IOS devices are coming up as shown below. I am not aware these devices are currently in use and it looks like we are not getting the correct device mapping. Has anyone seen this issue before?

iPhone7,1

iPhone7,2

iPhone8,1

iPhone8,2

iPhone8,4

All_MINT Device device string The mobile device type

Tags (2)
0 Karma

Joseph_tukuru
New Member

the Device field is using the Model Identifier and below shows the mapping for all IOS platforms. So I guess we will have to implement lookup table to match device id.

iPhone7,1 6 Plus";
iPhone7,2 6";
iPhone8,1 6s";

iPhone8,2 6s Plus";
iPhone8,4 SE";

0 Karma
Get Updates on the Splunk Community!

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...