Splunk Cookie Policy

We use our own and third-party cookies to provide you with a great online experience. We also use these cookies to improve our products and services, support our marketing campaigns, and advertise to you on our website and other websites. Some cookies may continue to collect information after you have left our website. Learn more (including how to update your settings) here.
Accept Cookie Policy

Accept License Agreements

This app is provided by a third party and your right to use the app is in accordance with the license provided by that third-party licensor. Splunk is not responsible for any third-party apps and does not provide any warranty or support. If you have any questions, complaints or claims with respect to this app, please contact the licensor directly.

Thank You

Downloading Cisco ACI App for Splunk Enterprise
SHA256 checksum (cisco-aci-app-for-splunk-enterprise_413.tgz) 1b98837f2bbba01c6a9bd32bfbdaf0cbf5b9a5b7693f09fc94c3a8ddf27dc2c6 SHA256 checksum (cisco-aci-app-for-splunk-enterprise_401.tgz) 3360d9852666ec2900fcfdcdef88c8d79e927e11caed778184c460905ce0ba39 SHA256 checksum (cisco-aci-app-for-splunk-enterprise_40.tgz) 1ab262d8b63cb6f8c023c85fb5607d85e26947855ffeb4f15525494269c7d725 SHA256 checksum (cisco-aci-app-for-splunk-enterprise_30.tgz) 61717e0d929d25084de89bb80366301a96e52ca3e21740696a86a4de492522ee SHA256 checksum (cisco-aci-app-for-splunk-enterprise_222.tgz) 3217cae28da9d660b85960c086875103005819c4830c4d66b3a51b585cc64f4e
To install your download
For instructions specific to your download, click the Details tab after closing this window.

Flag As Inappropriate

Cisco ACI App for Splunk Enterprise

Splunk Certified
Overview
Details
A flexible approach to monitoring your Cisco ACI and all other elements of your technology stack. The Splunk App for Cisco ACI uses Cisco’s open API framework to collect APIC events, health scores and inventory data to deliver centralized, real-time visibility for applications and ACI infrastructures across bare metal and virtualized environments

Cisco ACI App for Splunk Enterprise gathers data from APIC (Application Policy Infrastructure Controller) enabling you to:

• Gain real time visibility centrally across your ACI deployment
• Track inventory of logical constructs ( e.g tenants, application profiles, end point groups) and physical constructs ( e.g spines, leafs, VMs) along with their health/fault monitoring to analyze, prevent and fix problems
• Threshold setting for KPI's and generate alerts when threshold exceeds warning/critical limits
• Faults tracking with state transition
• Correlate compute, network and storage components by providing integration with Splunk app for vmware

ABOUT THIS APP


Splunk® Enterprise and Cisco ACI App for Splunk Enterprise offer a flexible approach to monitoring your Cisco ACI and all other elements of your technology stack. The Cisco ACI App for Splunk Enterprise uses Cisco's open API framework to collect APIC events, health scores and inventory data to deliver centralized, real-time visibility for applications and ACI infrastructures across bare metal and virtualized environments. And Cisco ACI exposes a wealth of networking data previously inaccessible to Splunk.

Cisco ACI App for Splunk Enterprise gathers data from APIC (Application Policy Infrastructure Controller) enabling you to:

• Gain real time visibility centrally across your ACI deployment

• Track inventory of logical constructs ( e.g tenants, application profiles, end point groups) and physical constructs ( e.g spines, leafs, VMs) along with their health/fault monitoring to analyze, prevent and fix problems

• Threshold setting for KPI's (e.g tenants, end point groups, contracts, filters, bridge domains and l3out networks) and generate alerts when threshold exceeds warning/critical limits

• Faults tracking with state transition

• Provides Top TCAM percentage used nodes and Port utilization of leafs and spines. Also provides tenant-based utilization report for bandwidth consumed

• Correlate compute, network and storage components by providing integration with Splunk app for vmware

• This app includes a set of pre-defined dashboards for specific user roles – Helpdesk admin, Tenant admin, Fabric Admin, VMM admin


KEY FEATURES


• Support for multiple APIC's (Version 4.0)

• Overall fabric health score monitoring

• Multi-Pod and Micro-segemntation support

• Top affected tenants, their health score and faults with the drilldown capability to look into fault descriptions and recommended actions.

• Top affected spines and leafs, their health score and faults with the drilldown capability to look into their physical components e.g. chassis, fan tray, power supply, supervisor etc.

• Trending of faults over time, by cause and by impacted assets

• Threshold setting for KPI's (e.g tenants, end point groups, contracts, filters, bridge domains and l3out networks) and generate alerts when threshold exceeds warning/critical limits

• Provides Top TCAM percentage used nodes and Port utilization of leafs and spines. Also provides tenant-based utilization report for bandwidth consumed

• Authentication tracking

• Ability to correlate ACI compute and storage data with data collected by Splunk app for VMware


REQUIREMENTS


• Splunk version supported 6.3, 6.4 and 6.5

• Splunk search head system should have 16 GB of RAM and a octa-core CPU to run this app smoothly

• This main app Cisco ACI App for Splunk Enterprise also requires Cisco ACI Add-on for Splunk Enterprise.

  For Cisco ACI App for Splunk Enterprise (Version 2.2.2) download Cisco ACI Add-on for Splunk Enterprise (Version 2.2) 
  For Cisco ACI App for Splunk Enterprise (Version 3.0) download Cisco ACI Add-on for Splunk Enterprise (Version 3.0)
  For Cisco ACI App for Splunk Enterprise (Version 4.0) download Cisco ACI Add-on for Splunk Enterprise (Version 4.0)

TOPOLOGY AND ENVIRONMENT SETTING


Install main app (Cisco ACI App for Splunk Enterprise) and Add-on app (Cisco ACI Add-on for Splunk Enterprise) on a single machine.
• Here both the app resides on a single machine.
• Main app uses the data collected by Add-on app and builds dashboard on it


HOW TO INSTALL


• This app should be installed on search head either through UI through "Manage Apps" or by extracting zip file into /opt/splunk/etc/apps folder.
• Restart Splunk.
• Note: If the previous version of App is already installed, remove the cisco-app-ACI folder from Splunk app folder before installation of newer version.


HOW TO CONFIGURE


• Login to Splunk: http://your_splunk_host:port
• In browser type: http://your_splunk_host:port/en-US/_bump . Click "Bump Version".
• In browser type: http://your_splunk_host:port/en-US/debug/refresh. Click "Refresh".
• Restart Splunk

Create index for Cisco ACI App for Splunk Enterprise (Only Version 4.0)

• To Create an index 'apic' with Splunk Web.
     In Splunk Web, navigate to Settings -> Indexes and click New Index.
     Index Name: apic 
     App: Cisco ACI App for Splunk Enterprise 
     Keep default for other inputs. Click Save. 
• Restart Splunk

• Users also needs to install and configure Add-on app (Cisco ACI Add-on for Splunk Enterprise). The installation and configuration steps are provided in add-on app documentation.


FOR MORE INFO


• Login to Splunk: http://your_splunk_host:port
• Complete instruction is also available as “Setup Guide” tab in Cisco ACI App for Splunk Enterprise.


SUPPORT


• This app is supported by Cisco Systems.
• Email support during weekday business hours.
• Please ask questions or send an email to aci-splunk-app@cisco.com; ashedge2@cisco.com; nilaysh@cisco.com


RESOURCE


Solution brief

• Overview: Cisco ACI App for Splunk Enterprise

Splunk and Cisco APIC drive network analytics

• Cisco Marketplace Website: Cisco ACI for Splunk Enterprise

Release Notes

Version 4.1.3
Sept. 22, 2017

Version 4.1.3 updates (compatible with ACI add-on 4.1.1):

New Fabric Extenders dashboard
APIC Syslog parsing capability - Used in System Faults and Events dashboard
APIC Health and Status monitoring
Minor bugs and fixes
Optimized dashboard/search performance

For Technical Support: contact aci-splunk-app@cisco.com OR create a case with Cisco TAC.

Version 4.0.1
March 31, 2017

All features existing in the version 4.0
New sample data for eventgen (Cisco ACI Add-on for Splunk Enterprise Version 4.0.1)
Minor bug fixes
Updated Help Desk>'System Faults' dashboard
Updated Fabric>'Authentication' dashboard

Version: 4.0 features
The features developed in this release include: • Support for multiple APIC's • Syslog Integration with ACI • Multi-Pod and Micro-segmentation view • Get to the root cause better and faster • Increased performance of dashboards • New and better User Interface and drill-down capabilities

Version 4.0
Jan. 24, 2017

The features developed in this release include: • Support for multiple APIC's • Syslog Integration with ACI • Multi-Pod and Micro-segmentation view • Get to the root cause better and faster • Increased performance of dashboards • New and better User Interface and drill-down capabilities

Version 3.0
Oct. 20, 2016

The features developed in this release include:
• Support for multiple APIC's
• Threshold setting for KPI's (i.e. no of tenants, end point groups, contracts, filters, bridge domains and l3out networks) • Generate Alters when threshold levels exceed. • Fault tracking with state transition. • Tenant Utilization, Top TCAM and Port Utilization.

Version 2.2.2
Oct. 14, 2016

The features developed in this release include: • Threshold setting for KPI's (i.e. no of tenants, end point groups, contracts, filters, bridge domains and l3out networks) • Generate Alters when threshold levels exceed. • Fault tracking with state transition. • Tenant Utilization, Top TCAM and Port Utilization. • Updated the Splunk Landing page/home page to display the Number of EPGs, Number of contracts, Number of filters, Number of BDs and Number of L3OutNetworks. Drill down on each component to display tenant-wise details.

134
Installs
1,698
Downloads
Share Subscribe LOGIN TO DOWNLOAD

Subscribe Share

Are you a developer?

As a Splunkbase app developer, you will have access to all Splunk development resources and receive a 50GB license to build an app that will help solve use cases for customers all over the world. Splunkbase has 1000+ apps and add-ons from Splunk, our partners and our community. Find an app or add-on for most any data source and user need, or simply create your own with help from our developer portal.

Follow Us:
© 2005-2018 Splunk Inc. All rights reserved.
Splunk®, Splunk>®, Listen to Your Data®, The Engine for Machine Data®, Hunk®, Splunk Cloud™, Splunk Light™, SPL™ and Splunk MINT™ are trademarks and registered trademarks of Splunk Inc. in the United States and other countries. All other brand names, product names, or trademarks belong to their respective owners.