<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How to pull data from elasticsearch to Phantom? in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/How-to-pull-data-from-elasticsearch-to-Phantom/m-p/685243#M114328</link>
    <description>&lt;P&gt;have find the answer to solve this?&lt;/P&gt;</description>
    <pubDate>Wed, 24 Apr 2024 05:26:19 GMT</pubDate>
    <dc:creator>bambarita</dc:creator>
    <dc:date>2024-04-24T05:26:19Z</dc:date>
    <item>
      <title>How to pull data from elasticsearch to Phantom?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/How-to-pull-data-from-elasticsearch-to-Phantom/m-p/589025#M103334</link>
      <description>&lt;DIV class=""&gt;
&lt;DIV&gt;&lt;SPAN&gt;I have elasticsearch database installed on one server. I am trying to pull data from elasticsearch to phantom SOAR. Connectivity between elasticsearch app and phantom is working fine but, I am getting following error while pulling data from elasticsearch.&lt;BR /&gt;&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV&gt;&lt;SPAN&gt;Loaded action execution configuration&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;DIV&gt;&lt;SPAN&gt;Successfully added containers: 0, Successfully added artifacts: 0&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;DIV&gt;&lt;SPAN&gt;1 action failed Unable to load query json. Error: Expecting value: line 1 column 1 (char 0)&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV&gt;&lt;SPAN&gt;Configuration:&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;DIV&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="amol_0-1647327153349.png" style="width: 400px;"&gt;&lt;img src="https://community.splunk.com/t5/image/serverpage/image-id/18498i1AB903D841706626/image-size/medium?v=v2&amp;amp;px=400" role="button" title="amol_0-1647327153349.png" alt="amol_0-1647327153349.png" /&gt;&lt;/span&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;</description>
      <pubDate>Tue, 15 Mar 2022 15:26:42 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/How-to-pull-data-from-elasticsearch-to-Phantom/m-p/589025#M103334</guid>
      <dc:creator>amol</dc:creator>
      <dc:date>2022-03-15T15:26:42Z</dc:date>
    </item>
    <item>
      <title>Re: How to pull data from elasticsearch to Phantom?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/How-to-pull-data-from-elasticsearch-to-Phantom/m-p/685243#M114328</link>
      <description>&lt;P&gt;have find the answer to solve this?&lt;/P&gt;</description>
      <pubDate>Wed, 24 Apr 2024 05:26:19 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/How-to-pull-data-from-elasticsearch-to-Phantom/m-p/685243#M114328</guid>
      <dc:creator>bambarita</dc:creator>
      <dc:date>2024-04-24T05:26:19Z</dc:date>
    </item>
  </channel>
</rss>

