Has anyone actually got the Forescout API working to change Meraki MS switchport VLAN settings based on Forescout configurations? We are trying to get this working, but are getting extremely long times between the Forescout sending the API PUT call, till the switch actually receives it and makes the change. Sometimes in excess of 12 hours. Obviously, this is not going to be a great help for dynamic VLAN changes when a device is plugged into a port...12 hours is not a great wait time. We have a network switch, setup with no complex configs - basic VLAN for access, and trunk port. This is registered to the cloud no issues and can ping the Forescout appliance. We have the Forescout appliance loaded with the Meraki plugin and configured with the API key. It all seems to be going OK. Until we want to start using this on Meraki access switches. The Forescout gets the syslog event message, and generates the API call and sends the PUT msg. But then the switch doesnt do anything - no API call received or anything until an average 12 hours later. only then does it apply. What we need to do is change a VLAN, based on the user's group when they connect up. We have load the API key, and configured the syslog server on the Meraki network. The Meraki plugin on the Forescout appliance seems to be working, and it can discover the switch. I can't help but feel like were missing something obvious, but I dont know where to look. I'm not super familiar with Forescout (we have another engineer taking care of this part), but I have full access on the Meraki stack. Has anyone actually gotten this to work using API calls? is there anything else i need to do to make this to work, other than the API key, and syslog configuration?
... View more