All Apps and Add-ons

Why are there no Traffic logs from Splunk Add-on for Cisco Meraki?

gordo32
Communicator

Recently deployed this add-on, but it doesn't seem to bring back Traffic or URL logs like we did when using the TA-meraki & syslog.

Are these not supported with the API-based mechanism, or is there something I'm missing - like a setting on the Meraki end to include these logs?

Thanks,

Gord T.

Labels (1)
0 Karma

gordo32
Communicator

A little more investigation on this, and there appears to be inconsistent information in the Meraki documentation on this. The top row of the table in this document states in the "device flow" information is available via API, but this document list URLs & Flows as Syslog messages, and documents Event Log separately (and I believe ONLY eventlog details are sent to Meraki Cloud).

Can anyone confirm whether Flows and/or URL events are eventually planned? For now, it looks like syslog is my best choice.

0 Karma

jgeremia
New Member

wanted to chime in and say this is my experience as well. One thing I was going to do for this was set up Splunk connect for syslog and push those logs to it. Splunk Connect for Syslog

0 Karma
Get Updates on the Splunk Community!

Upcoming Webinar: Unmasking Insider Threats with Slunk Enterprise Security’s UEBA

Join us on Wed, Dec 10. at 10AM PST / 1PM EST for a live webinar and demo with Splunk experts! Discover how ...

.conf25 technical session recap of Observability for Gen AI: Monitoring LLM ...

If you’re unfamiliar, .conf is Splunk’s premier event where the Splunk community, customers, partners, and ...

A Season of Skills: New Splunk Courses to Light Up Your Learning Journey

There’s something special about this time of year—maybe it’s the glow of the holidays, maybe it’s the ...