Accept License Agreements

This app is provided by a third party and your right to use the app is in accordance with the license provided by that third-party licensor. Splunk is not responsible for any third-party apps and does not provide any warranty or support. If you have any questions, complaints or claims with respect to this app, please contact the licensor directly.

Thank You

Downloading Cisco ACI App for Splunk Enterprise
MD5 checksum (cisco-aci-app-for-splunk-enterprise_40.tgz) 8621d5235bb744a68796862e91b27919 MD5 checksum (cisco-aci-app-for-splunk-enterprise_30.tgz) 58ea5e1faf83840b3d100e88f9374e37 MD5 checksum (cisco-aci-app-for-splunk-enterprise_222.tgz) 9bf9e2f990a612047ed72f5cbd3d2c90 MD5 checksum (cisco-aci-app-for-splunk-enterprise_221.tgz) 5f162d07e49dc3938cbd7ecb8edf204c MD5 checksum (cisco-aci-app-for-splunk-enterprise_22.tgz) b1e1603e0165b66079a32a631d8c157d MD5 checksum (cisco-aci-app-for-splunk-enterprise_21.tgz) d28ff2dd4c2e62d16a747af2afd85186 MD5 checksum (cisco-aci-app-for-splunk-enterprise_20.tgz) c4cbd4f434c105c55aae7939bc6373e5 MD5 checksum (cisco-aci-app-for-splunk-enterprise_11.tgz) 7c3f1785d4dcdc6b48c1986375dba4b6 MD5 checksum (cisco-aci-app-for-splunk-enterprise_10.tgz) e5b99e64f2d116dface669a9d6f7dc10
To install your download
For instructions specific to your download, click the Details tab after closing this window.

Flag As Inappropriate

Cisco ACI App for Splunk Enterprise

Splunk Certified
Overview
Details
A flexible approach to monitoring your Cisco ACI and all other elements of your technology stack. The Splunk App for Cisco ACI uses Cisco’s open API framework to collect APIC events, health scores and inventory data to deliver centralized, real-time visibility for applications and ACI infrastructures across bare metal and virtualized environments

Cisco ACI App for Splunk Enterprise gathers data from APIC (Application Policy Infrastructure Controller) enabling you to:

• Gain real time visibility centrally across your ACI deployment
• Track inventory of logical constructs ( e.g tenants, application profiles, end point groups) and physical constructs ( e.g spines, leafs, VMs) along with their health/fault monitoring to analyze, prevent and fix problems
• Threshold setting for KPI's and generate alerts when threshold exceeds warning/critical limits
• Faults tracking with state transition
• Correlate compute, network and storage components by providing integration with Splunk app for vmware

ABOUT THIS APP


Splunk® Enterprise and Cisco ACI App for Splunk Enterprise offer a flexible approach to monitoring your Cisco ACI and all other elements of your technology stack. The Cisco ACI App for Splunk Enterprise uses Cisco's open API framework to collect APIC events, health scores and inventory data to deliver centralized, real-time visibility for applications and ACI infrastructures across bare metal and virtualized environments. And Cisco ACI exposes a wealth of networking data previously inaccessible to Splunk.

Cisco ACI App for Splunk Enterprise gathers data from APIC (Application Policy Infrastructure Controller) enabling you to:

• Gain real time visibility centrally across your ACI deployment

• Track inventory of logical constructs ( e.g tenants, application profiles, end point groups) and physical constructs ( e.g spines, leafs, VMs) along with their health/fault monitoring to analyze, prevent and fix problems

• Threshold setting for KPI's (e.g tenants, end point groups, contracts, filters, bridge domains and l3out networks) and generate alerts when threshold exceeds warning/critical limits

• Faults tracking with state transition

• Provides Top TCAM percentage used nodes and Port utilization of leafs and spines. Also provides tenant-based utilization report for bandwidth consumed

• Correlate compute, network and storage components by providing integration with Splunk app for vmware

• This app includes a set of pre-defined dashboards for specific user roles – Helpdesk admin, Tenant admin, Fabric Admin, VMM admin


KEY FEATURES


• Support for multiple APIC's (Version 4.0)

• Overall fabric health score monitoring

• Multi-Pod and Micro-segemntation support

• Top affected tenants, their health score and faults with the drilldown capability to look into fault descriptions and recommended actions.

• Top affected spines and leafs, their health score and faults with the drilldown capability to look into their physical components e.g. chassis, fan tray, power supply, supervisor etc.

• Trending of faults over time, by cause and by impacted assets

• Threshold setting for KPI's (e.g tenants, end point groups, contracts, filters, bridge domains and l3out networks) and generate alerts when threshold exceeds warning/critical limits

• Provides Top TCAM percentage used nodes and Port utilization of leafs and spines. Also provides tenant-based utilization report for bandwidth consumed

• Authentication tracking

• Ability to correlate ACI compute and storage data with data collected by Splunk app for VMware


REQUIREMENTS


• Splunk version supported 6.3, 6.4 and 6.5

• Splunk search head system should have 16 GB of RAM and a octa-core CPU to run this app smoothly

• This main app Cisco ACI App for Splunk Enterprise also requires Cisco ACI Add-on for Splunk Enterprise.

  For Cisco ACI App for Splunk Enterprise (Version 2.2.2) download Cisco ACI Add-on for Splunk Enterprise (Version 2.2) 
  For Cisco ACI App for Splunk Enterprise (Version 3.0) download Cisco ACI Add-on for Splunk Enterprise (Version 3.0)
  For Cisco ACI App for Splunk Enterprise (Version 4.0) download Cisco ACI Add-on for Splunk Enterprise (Version 4.0)

TOPOLOGY AND ENVIRONMENT SETTING


Install main app (Cisco ACI App for Splunk Enterprise) and Add-on app (Cisco ACI Add-on for Splunk Enterprise) on a single machine.
• Here both the app resides on a single machine.
• Main app uses the data collected by Add-on app and builds dashboard on it


HOW TO INSTALL


• This app should be installed on search head either through UI through "Manage Apps" or by extracting zip file into /opt/splunk/etc/apps folder.
• Restart Splunk.
• Note: If the previous version of App is already installed, remove the cisco-app-ACI folder from Splunk app folder before installation of newer version.


HOW TO CONFIGURE


• Login to Splunk: http://your_splunk_host:port
• In browser type: http://your_splunk_host:port/en-US/_bump . Click "Bump Version".
• In browser type: http://your_splunk_host:port/en-US/debug/refresh. Click "Refresh".
• Restart Splunk

Create index for Cisco ACI App for Splunk Enterprise (Only Version 4.0)

• To Create an index 'apic' with Splunk Web.
     In Splunk Web, navigate to Settings -> Indexes and click New Index.
     Index Name: apic 
     App: Cisco ACI App for Splunk Enterprise 
     Keep default for other inputs. Click Save. 
• Restart Splunk

• Users also needs to install and configure Add-on app (Cisco ACI Add-on for Splunk Enterprise). The installation and configuration steps are provided in add-on app documentation.


FOR MORE INFO


• Login to Splunk: http://your_splunk_host:port
• Complete instruction is also available as “Setup Guide” tab in Cisco ACI App for Splunk Enterprise.


SUPPORT


• This app is supported by Cisco Systems.
• Email support during weekday business hours.
• Please ask questions or send an email to aci-splunk-app@cisco.com; ashedge2@cisco.com; nilaysh@cisco.com


RESOURCE


Solution brief

• Overview: Cisco ACI App for Splunk Enterprise

Splunk and Cisco APIC drive network analytics

• Cisco Marketplace Website: Cisco ACI for Splunk Enterprise

Release Notes

Version: 4.0

The features developed in this release include: • Support for multiple APIC's • Syslog Integration with ACI • Multi-Pod and Micro-segmentation view • Get to the root cause better and faster • Increased performance of dashboards • New and better User Interface and drill-down capabilities

Jan. 24, 2017, 12:34 a.m.

Platform Independent

6.5, 6.4, 6.3

Version: 3.0

The features developed in this release include:
• Support for multiple APIC's
• Threshold setting for KPI's (i.e. no of tenants, end point groups, contracts, filters, bridge domains and l3out networks) • Generate Alters when threshold levels exceed. • Fault tracking with state transition. • Tenant Utilization, Top TCAM and Port Utilization.

Oct. 20, 2016, 11:21 a.m.

Platform Independent

6.4, 6.3

Version: 2.2.2

The features developed in this release include: • Threshold setting for KPI's (i.e. no of tenants, end point groups, contracts, filters, bridge domains and l3out networks) • Generate Alters when threshold levels exceed. • Fault tracking with state transition. • Tenant Utilization, Top TCAM and Port Utilization. • Updated the Splunk Landing page/home page to display the Number of EPGs, Number of contracts, Number of filters, Number of BDs and Number of L3OutNetworks. Drill down on each component to display tenant-wise details.

Oct. 14, 2016, 1:21 p.m.

Platform Independent

6.4, 6.3

Version: 2.2.1

The features developed in this release include:
• Threshold setting for KPI's (i.e. no of tenants, end point groups, contracts, filters, bridge domains and l3out networks)
• Generate Alters when threshold levels exceed.
• Fault tracking with state transition.
• Tenant Utilization, Top TCAM and Port Utilization.
• Updated the Splunk Landing page/home page to display the Number of EPGs, Number of contracts, Number of filters, Number of BDs and Number of L3OutNetworks. Drill down on each component to display tenant-wise details.

Oct. 7, 2016, 12:07 p.m.

Platform Independent

6.4, 6.3

Version: 2.2

Release Features
The features developed in this release include:
• Threshold setting for KPI's (i.e. no of tenants, end point groups, contracts, filters, bridge domains and l3out networks)
• Generate Alters when threshold levels exceed.
• Fault tracking with state transition.
• Tenant Utilization.
• TCAM and Port Utilization.
• Updated the Splunk Landing page/home page to display the Number of EPGs, Number of contracts, Number of filters, Number of BDs and Number of L3OutNetworks. Drill down on each component to display tenant-wise details.

Sept. 9, 2016, 11:05 a.m.

Platform Independent

6.4, 6.3

Version: 2.1

Release Features
The features developed in this release include:
• Threshold setting for KPI's (i.e. no of tenants, end point groups, contracts, filters, bridge domains and l3out networks)
• Generate Alters when threshold levels exceed.
• Fault tracking with state transition.
• Tenant Utilization.
• TCAM and Port Utilization.
• Updated the Splunk Landing page/home page to display the Number of EPGs, Number of contracts, Number of filters, Number of BDs and Number of L3OutNetworks. Drill down on each component to display tenant-wise details.

Aug. 3, 2016, 1:06 p.m.

Platform Independent

6.4, 6.3

Version: 2.0

Release Features
The features developed in this release include:
• Threshold setting for KPI's (i.e. no of tenants, end point groups, contracts, filters, bridge domains and l3out networks)
• Generate Alters when threshold levels exceed.
• Fault tracking with state transition.
• Tenant Utilization.
• TCAM and Port Utilization.
• Updated the Splunk Landing page/home page to display the Number of EPGs, Number of contracts, Number of filters, Number of BDs and Number of L3OutNetworks. Drill down on each component to display tenant-wise details.

July 5, 2016, 11:06 a.m.

Platform Independent

6.4, 6.3

Version: 1.1

April 1, 2015, 9:51 a.m.

Platform Independent

6.2

Version: 1.0

Oct. 31, 2014, 5:05 p.m.

Platform Independent

6.1

67
Installs
841
Downloads
Share Subscribe LOGIN TO DOWNLOAD
Version
4.0
Category
DevOps
IT Operations
Product Support
Splunk Enterprise
Splunk Cloud
Content Type
App
Splunk Versions
6.5
6.4
6.3
CIM Versions
CIM 4.6, 4.5, 4.4, 4.3, 4.2
Licensing
End User License Agreement for Third-Party Content
Platforms
Platform Independent
Built by
Nilay Jayesh Shah
Contact Developer
Subscribe Share

Splunk Certification Program

Splunk's App Certification program uses a specific set of criteria to evaluate the level of quality, usability and security your app offers to its users. In addition, we evaluate the documentation and support you offer to your app's users.

Are you a developer?

As a Splunkbase app developer, you will have access to all Splunk development resources and receive a 50GB license to build an app that will help solve use cases for customers all over the world. Splunkbase has 1000+ apps and add-ons from Splunk, our partners and our community. Find an app or add-on for most any data source and user need, or simply create your own with help from our developer portal.

Follow Us:
© 2005-2017 Splunk Inc. All rights reserved.
Splunk®, Splunk>®, Listen to Your Data®, The Engine for Machine Data®, Hunk®, Splunk Cloud™, Splunk Light™, SPL™ and Splunk MINT™ are trademarks and registered trademarks of Splunk Inc. in the United States and other countries. All other brand names, product names, or trademarks belong to their respective owners.