↳ Source GitHubSolution

Cisco Meraki Events via REST API

Description

The Cisco Meraki Events via REST API solution for Microsoft Sentinel enables you to easily ingest the following events from [Cisco Meraki MX security appliance](https://meraki.cisco.com/products/security-sd-wan/) to Microsoft Sentinel using Cisco Meraki API: 1. [Organization Appliance Security Events](https://developer.cisco.com/meraki/api-latest/#!get-organization-appliance-security-events) 2. [Organization Api Requests](https://developer.cisco.com/meraki/api-latest/#!get-organization-api-requests) 3. [Organization Configuration Changes](https://developer.cisco.com/meraki/api-latest/#!get-organization-configuration-changes) In addition to the ASIM-normalized events above, the solution also ingests the following Cisco Meraki Dashboard inventory and wireless security data into custom tables: 4. [Organizations](https://developer.cisco.com/meraki/api-latest/#!get-organizations) 5. [Organization Networks](https://developer.cisco.com/meraki/api-latest/#!get-organization-networks) 6. [Network Clients](https://developer.cisco.com/meraki/api-latest/#!get-network-clients) 7. [Wireless Air Marshal Events](https://developer.cisco.com/meraki/api-latest/#!get-network-wireless-air-marshal) This enables you to view and analyze this data for security monitoring and using them to create custom alerts, and incorporate it to improve your investigation process, giving you more insight into your platform security. **Underlying Microsoft Technologies used:** This solution takes a dependency on the following technologies, and some of these dependencies either may be in [Preview](https://azure.microsoft.com/support/legal/preview-supplemental-terms/) state or might result in additional ingestion or operational costs: 1. [Azure Monitor Logs: DCR-based Custom Logs](https://docs.microsoft.com/azure/azure-monitor/logs/custom-logs-overview) 2. [Codeless Connector Platform (CCP)](https://docs.microsoft.com/azure/sentinel/create-codeless-connector?tabs=deploy-via-arm-template%2Cconnect-via-the-azure-portal) **Supported ASIM schema:** 1. Network Session 2. Web Session 3. Audit Event
Version
3.2.0
Auteur / éditeur déclaré
Microsoft - support@microsoft.com
Niveau de support
Microsoft

Contenus associés

Liens établis à partir des identifiants déclarés et des manifests des solutions.

Traçabilité de la source

GitHub

Les valeurs affichées proviennent des fichiers du dépôt Azure/Azure-Sentinel. Elles décrivent le modèle publié, pas la configuration de votre workspace.

Identifiant source
azure-sentinel-solution-ciscomerakinativepoller
Autres fichiers source 2Solutions/Cisco Meraki Events via REST API/Data/Solution_Cisco Meraki Events via REST API.jsonsolution-manifest ↗Solutions/Cisco Meraki Events via REST API/SolutionMetadata.jsonsolution-metadata ↗
GSTEP / SUIVI DU CATALOGUE

Ajouté au catalogue : 16 sept. 2026 · 05:49 UTC
Dernier changement observé : 16 sept. 2026 · 05:49 UTC

Dates de synchronisation GSTEP, distinctes des dates de publication du contenu source.