Details

This workflow appears in the pivot menu and allows a user to block an IP address on a Cisco Meraki MX L3 outbound firewall (using the selected observable as the rule's destination). Before the rule is added, approval is requested.

Description

This workflow appears in the pivot menu and allows a user to block an IP address on a Cisco Meraki MX L3 outbound firewall (using the selected observable as the rule's destination). Before the rule is added, approval is requested. Supported observables: IP, IPV6.

Targets: Automation APIs system target, Platform APIs system target, Meraki integration target

Steps:

  • Fetch the integration configuration
  • Fetch the network list
  • Create a prompt with networks that the user can select from
  • Send the approval request to the configured approver:
    • If approved, loop through each network and update the firewall rules
    • If not approved or expired, end the workflow
Required targets

This workflow requires the following targets to be available before it can be run.

Integration targets

  • Meraki
  • Cisco XDR
About
Author
Cisco
Version
v1.0
Intent
Pivot Menu
Integration
Average rating
No ratings yet
Authorship
Cisco Managed
Contact and support information
External links
Related workflows
Cisco Managed
This workflow can be added to your incident response playbook and allows you to get a summary of network splash login attempts for your Cisco Meraki organization's networks.
Cisco Managed
This workflow can be added to your incident response playbook and allows you to get a summary of top appliances by utilization for your Cisco Meraki organization.
Cisco Managed
This workflow can be added to your incident response playbook and allows you to get a summary of top clients by usage for your Cisco Meraki organization.
Cisco Managed
This workflow appears in the pivot menu and allows a user to block an IP address on a Cisco Meraki MX L3 outbound firewall.
Cisco Managed
This workflow can be added to your incident response playbook and allows you to block IP addresses using the L3 outbound firewall on Cisco Meraki MX appliances.
Cisco Managed
This workflow appears in the pivot menu and allows a user to block an IP address on a Cisco Meraki MX L3 outbound firewall (using the selected observable as the rule's destination).
Cisco Managed
This workflow fetches the URLs from a Cisco XDR feed and compares them to the blocked URLs in the Cisco Meraki appliance content filtering configuration.