Splunk® Supported Add-ons

Splunk Add-on for Cisco Meraki

Acrobat logo Download manual as PDF


Acrobat logo Download topic as PDF

Release notes history

The latest version of the Splunk Add-on for Cisco Meraki is version 2.1.0. See the Release notes for more information.

Version 2.0.3

Version 2.0.3 of the Splunk Add-on for Cisco Meraki was released on February 6, 2024.

Splunk Enterprise platform versions 8.1, 8.2, 9.0

Splunk Cloud (Classic Stack with IDM and Search Head on Victoria)

CIM 5.0.1
Platforms Platform independent
Vendor Products Cisco Meraki API v1.22.0

The field alias functionality is compatible with the current version of this add-on. The current version of this add-on does not support older field alias configurations.

For more information about the field alias configuration change, refer to the Splunk Enterprise Release Notes.

New features

This release includes the following changes:

  • Fixed a security vulnerability found in Meraki library by removing a vulnerable package inside the library.

Fixed issues

Version 2.0.3 of the Splunk Add-on for Cisco Meraki contains the following fixed issues.


Date resolved Issue number Description
2024-02-19 ADDON-68604 Splunk Add-on for Cisco Meraki in version 2.0.1 and below are affected due to Meraki API v0 sunset, and will not work properly.

Known issues

Version 2.0.3 of the Splunk Add-on for Cisco Meraki the following known issues.


Third-party software attributions

Media:PROJECT_splunk-add-on-for-cisco-meraki_2024-02-01_132535161Z.pdf

Version 2.0.2

Version 2.0.2 of the Splunk Add-on for Cisco Meraki was released on January 6, 2024.

Splunk Enterprise platform versions 8.1, 8.2, 9.0

Splunk Cloud (Classic Stack with IDM and Search Head on Victoria)

CIM 5.0.1
Platforms Platform independent
Vendor Products Cisco Meraki API v1.22.0

The field alias functionality is compatible with the current version of this add-on. The current version of this add-on does not support older field alias configurations.

For more information about the field alias configuration change, refer to the Splunk Enterprise Release Notes.

New features

This release includes the following changes:

  • Updated certifications to 2023.11.17 and urllib3 to 1.26.18.

Fixed issues

Version 2.0.2 of the Splunk Add-on for Cisco Meraki contains the following fixed issues.


Date resolved Issue number Description
2024-02-19 ADDON-68604 Splunk Add-on for Cisco Meraki in version 2.0.1 and below are affected due to Meraki API v0 sunset, and will not work properly.

Known issues

Version 2.0.2 of the Splunk Add-on for Cisco Meraki the following known issues.


Third-party software attributions

Media:PROJECT_splunk-add-on-for-cisco-meraki_2024-01-02_163210962Z.pdf

Version 2.0.1

Version 2.0.1 of the Splunk Add-on for Cisco Meraki was released on March 7, 2023.

Splunk Enterprise platform versions 8.1, 8.2, 9.0

Splunk Cloud (Classic Stack with IDM and Search Head on Victoria)

CIM 5.0.1
Platforms Platform independent
Vendor Products Cisco Meraki API v1.22.0

The field alias functionality is compatible with the current version of this add-on. The current version of this add-on does not support older field alias configurations.

For more information about the field alias configuration change, refer to the Splunk Enterprise Release Notes.

New features

This release includes the following changes:

  • Fixed a security vulnerability found in the certifi library.

Fixed issues

Version 2.0.1 of the Splunk Add-on for Cisco Meraki contains the following fixed issues.


Known issues

Version 2.0.1 of the Splunk Add-on for Cisco Meraki the following known issues.


Date filed Issue number Description
2024-02-09 ADDON-68604 Splunk Add-on for Cisco Meraki in version 2.0.1 and below are affected due to Meraki API v0 sunset, and will not work properly.

Workaround:
Please update Splunk Add-on for Cisco Meraki to version 2.0.2 or newer.

Third-party software attributions

Third-Party_library

Version 2.0.0

Version 2.0.0 of the Splunk Add-on for Cisco Meraki was released on August 22, 2022.

Splunk Enterprise platform versions 8.1, 8.2, 9.0

Splunk Cloud (Classic Stack with IDM and Search Head on Victoria)

CIM 5.0.1
Platforms Platform independent
Vendor Products Cisco Meraki API v1.22.0

The field alias functionality is compatible with the current version of this add-on. The current version of this add-on does not support older field alias configurations.

For more information about the field alias configuration change, refer to the Splunk Enterprise Release Notes.

This release includes the following changes:

  • eventData.ip is mapped to src_ip for dhcp_lease instead of to dest_ip. eventData.server_ip mapped to dest_ip. If content was built on the fields, review and update as needed.
  • Support for the China Service Region has been added to Configuration > Organization

Refer to "Information for Users in China" (https://documentation.meraki.com/General_Administration/Support/Information_for_Users_in_China) for more information about the service

NOTE: Data loaded to Splunk is limited to what is exposed in the endpoint. Particularly, there are no SSIDs categorization as in Dashboard GUI - as Rogue SSIDs, Other SSIDs, Spoofs, etc. This release is compatible with the following software, CIM versions, and platforms.

  • Splunk Add-on for Cisco Meraki field mapping changes:
Source-type meraki_event_type Fields added Fields removed
['meraki:securityappliances'] dhcp_lease src_ip, duration user

Fixed issues

Version 2.0.0 of the Splunk Add-on for Cisco Meraki contains the following fixed issues.


Known issues

Version 2.0.0 of the Splunk Add-on for Cisco Meraki the following known issues.


Date filed Issue number Description
2024-02-09 ADDON-68604 Splunk Add-on for Cisco Meraki in version 2.0.1 and below are affected due to Meraki API v0 sunset, and will not work properly.

Workaround:
Please update Splunk Add-on for Cisco Meraki to version 2.0.2 or newer.

Third-party software attributions

Media:Meraki_Third-Party_library.pdf

Version 1.1.0

Version 1.1.0 of the Splunk Add-on for Cisco Meraki was released on November 12, 2021. It is compatible with the following software, CIM versions, and platforms.

Splunk Enterprise platform versions 8.0, 8.1, 8.2

Splunk Cloud (Classic Stack with IDM and Search Head on Victoria)

CIM 4.18.1
Platforms Platform independent
Vendor Products Cisco Meraki API v1.12.0

The field alias functionality is compatible with the current version of this add-on. The current version of this add-on does not support older field alias configurations.

For more information about the field alias configuration change, refer to the Splunk Enterprise Release Notes.

Fixed issues

Version 1.1.0 of the Splunk Add-on for Cisco Meraki contains the following fixed issues.


Date resolved Issue number Description
2021-10-26 ADDON-39851 If there is more than one productType, the app fails to collect any logs.

Known issues

Version 1.1.0 of the Splunk Add-on for Cisco Meraki the following known issues.


Date filed Issue number Description
2024-02-09 ADDON-68604 Splunk Add-on for Cisco Meraki in version 2.0.1 and below are affected due to Meraki API v0 sunset, and will not work properly.

Workaround:
Please update Splunk Add-on for Cisco Meraki to version 2.0.2 or newer.

Third-party software attributions

Media:Meraki_Third-Party_library.pdf

Version 1.0.1

Version 1.0.1 of the Splunk Add-on for Cisco Meraki was released on June 4, 2021. It is compatible with the following software, CIM versions, and platforms.

Splunk platform versions 8.0, 8.1, 8.2
CIM 4.18.1
Platforms Platform independent
Vendor Products Cisco Meraki API v1.7.0

The field alias functionality is compatible with the current version of this add-on. The current version of this add-on does not support older field alias configurations.

For more information about the field alias configuration change, refer to the Splunk Enterprise Release Notes.

Fixed issues

Version 1.0.1 of the Splunk Add-on for Cisco Meraki contains the following fixed issues.


Known issues

Version 1.0.1 of the Splunk Add-on for Cisco Meraki contains the following known issues.


Date filed Issue number Description
2024-02-09 ADDON-68604 Splunk Add-on for Cisco Meraki in version 2.0.1 and below are affected due to Meraki API v0 sunset, and will not work properly.

Workaround:
Please update Splunk Add-on for Cisco Meraki to version 2.0.2 or newer.
2021-07-28 ADDON-39851 If there is more than one productType, the app fails to collect any logs.

Workaround:
No workaround available. Issue fixed in the upcoming 1.1.0 release

Third-party software attributions

Version 1.0.1 of the Splunk Add-on for Cisco Meraki incorporates the following third-party software or libraries.

Library License
meraki 1.7.2 https://github.com/meraki/dashboard-api-python/blob/master/LICENSE
PySocks 1.7.1 https://github.com/Anorov/PySocks/blob/master/LICENSE
aiohttp 3.7.4.post0 https://github.com/aio-libs/aiohttp/blob/master/LICENSE.txt
async_timeout 3.0.1 https://github.com/aio-libs/async-timeout/blob/master/LICENSE
certifi 2020.12.5 https://github.com/certifi/python-certifi/blob/master/LICENSE

https://www.mozilla.org/en-US/MPL/2.0/* meraki

chardet 4.0.0 https://github.com/chardet/chardet/blob/master/LICENSE
future 0.18.2 https://github.com/PythonCharmers/python-future/blob/master/LICENSE.txt
httplib2 0.19.0 https://github.com/httplib2/httplib2

http://opensource.org/licenses/MIT https://github.com/httplib2/httplib2/blob/master/LICENSE

idna 3.1 https://github.com/kjd/idna/blob/master/LICENSE.md
multidict 5.1.0 https://github.com/aio-libs/multidict/blob/master/LICENSE
requests 2.25.1 https://github.com/psf/requests/blob/master/LICENSE
schematics 2.1.0 https://github.com/schematics/schematics/blob/master/LICENSE
sortedcontainers 2.3.0 https://github.com/grantjenks/python-sortedcontainers/blob/master/LICENSE
urllib3 1.26.4 https://github.com/urllib3/urllib3/blob/main/LICENSE.txt
yarl 1.6.3 https://github.com/aio-libs/yarl/blob/master/LICENSE
addonfactory-ucc-generator 4.4.0 https://github.com/splunk/addonfactory-ucc-generator/blob/main/LICENSES/Apache-2.0.txt
Last modified on 22 February, 2024
PREVIOUS
Release notes
 

This documentation applies to the following versions of Splunk® Supported Add-ons: released


Was this documentation topic helpful?


You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters