Cisco Meraki - Get Network Splash Login Attempts
Details
This workflow can be added to your incident response playbook and allows you to get a summary of network splash login attempts for your Cisco Meraki organization's networks. This summary is posted to the incident as a worklog note.
Description
This workflow can be added to your incident response playbook and allows you to get a summary of network splash login attempts for your Cisco Meraki organization's networks. This summary is posted to the incident as a worklog note.
Targets: Automation APIs system target, Platform APIs system target, Meraki integration target
Steps:
- Fetch the configuration for the Meraki integration
- Fetch a list of Meraki networks for this organization
- Prompt the user who ran the playbook task to select which networks to fetch data for
- For each selected Meraki network:
- Get network splash login attempts
- If the request failed, end the workflow
- Create the report for the incident worklog
- Get network splash login attempts
Required targets
This workflow requires the following targets to be available before it can be run.
Integration targets
- Cisco XDR
- Meraki
About
Author
Cisco
Version
v1.0
Intent
Playbook Task
Integration
Average rating
No ratings yet
Authorship
Cisco Managed
Contact and support information
External links
Related workflows
Cisco Managed
This workflow can be added to your incident response playbook and allows you to get a summary of network splash login attempts for your Cisco Meraki organization's networks.
Cisco Managed
This workflow can be added to your incident response playbook and allows you to get a summary of top appliances by utilization for your Cisco Meraki organization.
Cisco Managed
This workflow can be added to your incident response playbook and allows you to get a summary of top clients by usage for your Cisco Meraki organization.
Cisco Managed
This workflow appears in the pivot menu and allows a user to block an IP address on a Cisco Meraki MX L3 outbound firewall.
Cisco Managed
This workflow can be added to your incident response playbook and allows you to block IP addresses using the L3 outbound firewall on Cisco Meraki MX appliances.
Cisco Managed
This workflow appears in the pivot menu and allows a user to block an IP address on a Cisco Meraki MX L3 outbound firewall (using the selected observable as the rule's destination).
Cisco Managed
This workflow fetches the URLs from a Cisco XDR feed and compares them to the blocked URLs in the Cisco Meraki appliance content filtering configuration.