跳到主要內容
Microsoft
separator
https://catalogartifact.azureedge.net/publicartifacts/azuresentinel.azure-sentinel-solution-ciscomerakinativepoller-a849335a-ddb2-4998-bae5-25e8848d9612/image2_meraki.png

Cisco Meraki Events via REST API

作者 Microsoft Sentinel, Microsoft Corporation

Cisco Meraki Events via REST API

Note: Please refer to the following before installing the solution:

• Review the solution Release Notes

• There may be known issues pertaining to this Solution, please refer to them before installing.

The Cisco Meraki Events via REST API solution for Microsoft Sentinel enables you to easily ingest the following events from Cisco Meraki MX security appliance to Microsoft Sentinel using Cisco Meraki API:

  1. Organization Appliance Security Events
  2. Organization Api Requests
  3. Organization Configuration Changes

In addition to the ASIM-normalized events above, the solution also ingests the following Cisco Meraki Dashboard inventory and wireless security data into custom tables:

  1. Organizations
  2. Organization Networks
  3. Network Clients
  4. Wireless Air Marshal Events

This enables you to view and analyze this data for security monitoring and using them to create custom alerts, and incorporate it to improve your investigation process, giving you more insight into your platform security.

Underlying Microsoft Technologies used:

This solution takes a dependency on the following technologies, and some of these dependencies either may be in Preview state or might result in additional ingestion or operational costs:

  1. Azure Monitor Logs: DCR-based Custom Logs
  2. Codeless Connector Platform (CCP)

Supported ASIM schema:

  1. Network Session
  2. Web Session
  3. Audit Event

Data Connectors: 1

Learn more about Microsoft Sentinel | Learn more about Solutions

中文(台灣)
您的隱私權選擇退出圖示 您的隱私選擇
消費者健康情況隱私權 網站地圖 Contact Us 隱私權與 Cookie 使用條款 商標 關於我們的廣告 管理 Cookie