<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic &amp;quot;Akamai​ Security Incident Event Manager API&amp;quot; not found in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/quot-Akamai-Security-Incident-Event-Manager-API-quot-not-found/m-p/744185#M118226</link>
    <description>&lt;P&gt;Upon installing the Akamai SIEM I am not seeing the data input option for "Akamai​&amp;nbsp;Security Incident Event Manager API", please advise?&amp;nbsp; Java is installed and running Splunk 9.3.3&lt;/P&gt;</description>
    <pubDate>Tue, 15 Apr 2025 16:09:13 GMT</pubDate>
    <dc:creator>cmutt78_2</dc:creator>
    <dc:date>2025-04-15T16:09:13Z</dc:date>
    <item>
      <title>"Akamai​ Security Incident Event Manager API" not found</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/quot-Akamai-Security-Incident-Event-Manager-API-quot-not-found/m-p/744185#M118226</link>
      <description>&lt;P&gt;Upon installing the Akamai SIEM I am not seeing the data input option for "Akamai​&amp;nbsp;Security Incident Event Manager API", please advise?&amp;nbsp; Java is installed and running Splunk 9.3.3&lt;/P&gt;</description>
      <pubDate>Tue, 15 Apr 2025 16:09:13 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/quot-Akamai-Security-Incident-Event-Manager-API-quot-not-found/m-p/744185#M118226</guid>
      <dc:creator>cmutt78_2</dc:creator>
      <dc:date>2025-04-15T16:09:13Z</dc:date>
    </item>
    <item>
      <title>Re: "Akamai​ Security Incident Event Manager API" not found</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/quot-Akamai-Security-Incident-Event-Manager-API-quot-not-found/m-p/744186#M118227</link>
      <description>&lt;P&gt;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/65902"&gt;@cmutt78_2&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Please try clicking on Settings -&amp;gt; then click on Data Inputs and then look for&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;Akamai​&amp;nbsp;Security Incident Event Manager API&lt;/SPAN&gt;&lt;SPAN&gt;. Once you locate it, click on it and follow the instructions mentioned on this page:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;A href="https://techdocs.akamai.com/siem-integration/docs/siem-splunk-connector#install-the-splunk-connector" target="_blank" rel="noopener nofollow noreferrer"&gt;https://techdocs.akamai.com/siem-integration/docs/siem-splunk-connector#install-the-splunk-connector&lt;/A&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 15 Apr 2025 16:49:39 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/quot-Akamai-Security-Incident-Event-Manager-API-quot-not-found/m-p/744186#M118227</guid>
      <dc:creator>kiran_panchavat</dc:creator>
      <dc:date>2025-04-15T16:49:39Z</dc:date>
    </item>
    <item>
      <title>Re: "Akamai​ Security Incident Event Manager API" not found</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/quot-Akamai-Security-Incident-Event-Manager-API-quot-not-found/m-p/744188#M118228</link>
      <description>&lt;P&gt;Not there and no additional pages to navigate&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="cmutt78_2_0-1744735788345.png" style="width: 400px;"&gt;&lt;img src="https://community.splunk.com/t5/image/serverpage/image-id/38561i1D439154D6B01A53/image-size/medium?v=v2&amp;amp;px=400" role="button" title="cmutt78_2_0-1744735788345.png" alt="cmutt78_2_0-1744735788345.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 15 Apr 2025 16:50:12 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/quot-Akamai-Security-Incident-Event-Manager-API-quot-not-found/m-p/744188#M118228</guid>
      <dc:creator>cmutt78_2</dc:creator>
      <dc:date>2025-04-15T16:50:12Z</dc:date>
    </item>
    <item>
      <title>Re: "Akamai​ Security Incident Event Manager API" not found</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/quot-Akamai-Security-Incident-Event-Manager-API-quot-not-found/m-p/744189#M118229</link>
      <description>&lt;P&gt;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/65902"&gt;@cmutt78_2&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;After installing Akamai Splunk Connector, Did you try to restart splunk instance?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 15 Apr 2025 16:51:11 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/quot-Akamai-Security-Incident-Event-Manager-API-quot-not-found/m-p/744189#M118229</guid>
      <dc:creator>kiran_panchavat</dc:creator>
      <dc:date>2025-04-15T16:51:11Z</dc:date>
    </item>
    <item>
      <title>Re: "Akamai​ Security Incident Event Manager API" not found</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/quot-Akamai-Security-Incident-Event-Manager-API-quot-not-found/m-p/744191#M118230</link>
      <description>&lt;P&gt;yep, I am thinking it is an app issue&lt;/P&gt;</description>
      <pubDate>Tue, 15 Apr 2025 16:57:10 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/quot-Akamai-Security-Incident-Event-Manager-API-quot-not-found/m-p/744191#M118230</guid>
      <dc:creator>cmutt78_2</dc:creator>
      <dc:date>2025-04-15T16:57:10Z</dc:date>
    </item>
    <item>
      <title>Re: "Akamai​ Security Incident Event Manager API" not found</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/quot-Akamai-Security-Incident-Event-Manager-API-quot-not-found/m-p/744192#M118231</link>
      <description>&lt;P&gt;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/65902"&gt;@cmutt78_2&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Could you please check the splunkd.log file? It may contain information explaining why the data input from the add-on isn't appearing.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 15 Apr 2025 17:02:41 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/quot-Akamai-Security-Incident-Event-Manager-API-quot-not-found/m-p/744192#M118231</guid>
      <dc:creator>kiran_panchavat</dc:creator>
      <dc:date>2025-04-15T17:02:41Z</dc:date>
    </item>
    <item>
      <title>Re: "Akamai​ Security Incident Event Manager API" not found</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/quot-Akamai-Security-Incident-Event-Manager-API-quot-not-found/m-p/744194#M118232</link>
      <description>&lt;P&gt;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/65902"&gt;@cmutt78_2&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;Were &lt;/SPAN&gt;&lt;SPAN class=""&gt;you &lt;/SPAN&gt;&lt;SPAN class=""&gt;able &lt;/SPAN&gt;&lt;SPAN class=""&gt;to &lt;/SPAN&gt;&lt;SPAN class=""&gt;see &lt;/SPAN&gt;&lt;SPAN class=""&gt;the &lt;/SPAN&gt;&lt;SPAN class=""&gt;data &lt;/SPAN&gt;&lt;SPAN class=""&gt;input &lt;/SPAN&gt;&lt;SPAN class=""&gt;after &lt;/SPAN&gt;&lt;SPAN class=""&gt;restarting &lt;/SPAN&gt;&lt;SPAN class=""&gt;the &lt;/SPAN&gt;&lt;SPAN class=""&gt;Splunk &lt;/SPAN&gt;&lt;SPAN class=""&gt;services&lt;/SPAN&gt;&lt;SPAN class=""&gt;, &lt;/SPAN&gt;&lt;SPAN class=""&gt;or &lt;/SPAN&gt;&lt;SPAN class=""&gt;is &lt;/SPAN&gt;&lt;SPAN class=""&gt;it &lt;/SPAN&gt;&lt;SPAN class=""&gt;still &lt;/SPAN&gt;&lt;SPAN class=""&gt;missing&lt;/SPAN&gt;&lt;SPAN class=""&gt;?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;My Akamai Data input:-&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="kiran_panchavat_1-1744736944713.png" style="width: 400px;"&gt;&lt;img src="https://community.splunk.com/t5/image/serverpage/image-id/38564i452CB8EDBA53ECC6/image-size/medium?v=v2&amp;amp;px=400" role="button" title="kiran_panchavat_1-1744736944713.png" alt="kiran_panchavat_1-1744736944713.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Where did you install the Akamai add-on, on the Heavy Forwarder (HF)? If it's on the HF, does it have a valid license? Some features require a license, which aren't available with the Free license.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;U&gt;For a heavy forwarder (HF), you should set up one of the following options:&lt;/U&gt;&lt;/P&gt;&lt;P&gt;1) Make the HF a slave of a license master. This will give the HF all of the enterprise capabilities - and the HF will consume no license, as long as it does not index data.&lt;/P&gt;&lt;P&gt;2) Install the forwarder license. This will give the HF many enterprise capabilities, but not all. The HF will be able to parse and forward data. However, it will&amp;nbsp;not&amp;nbsp;be permitted to index and it will not be able to act as a deployment server (as an example). This is the option I would usually choose.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 15 Apr 2025 17:11:28 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/quot-Akamai-Security-Incident-Event-Manager-API-quot-not-found/m-p/744194#M118232</guid>
      <dc:creator>kiran_panchavat</dc:creator>
      <dc:date>2025-04-15T17:11:28Z</dc:date>
    </item>
    <item>
      <title>Re: "Akamai​ Security Incident Event Manager API" not found</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/quot-Akamai-Security-Incident-Event-Manager-API-quot-not-found/m-p/744219#M118238</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/65902"&gt;@cmutt78_2&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://yoursplunkinstance/en-US/manager/search/data/inputs/TA-Akamai_SIEM" target="_blank"&gt;https://yoursplunkinstance/en-US/manager/search/data/inputs/TA-Akamai_SIEM&lt;/A&gt;&amp;nbsp;?&lt;/P&gt;&lt;P&gt;You should see an empty table with a green "Add" button at the top right, something like this:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="livehybrid_0-1744750532098.png" style="width: 400px;"&gt;&lt;img src="https://community.splunk.com/t5/image/serverpage/image-id/38572i0745204A8ABC52BD/image-size/medium?v=v2&amp;amp;px=400" role="button" title="livehybrid_0-1744750532098.png" alt="livehybrid_0-1744750532098.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The other thing you could try is running:&lt;/P&gt;&lt;LI-CODE lang="markup"&gt; /opt/splunk/bin/splunk cmd splunkd print-modinput-config TA-Akamai_SIEM TA-Akamai_SIEM&lt;/LI-CODE&gt;&lt;P&gt;This will trigger the same process as when the input is loaded by Splunk - check for any errors output here, you should end up with something that looks a bit like this:&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;&amp;lt;?xml version="1.0" encoding="UTF-8"?&amp;gt;
&amp;lt;input&amp;gt;
  &amp;lt;server_host&amp;gt;macdev&amp;lt;/server_host&amp;gt;
  &amp;lt;server_uri&amp;gt;https://127.0.0.1:8089&amp;lt;/server_uri&amp;gt;
  &amp;lt;session_key&amp;gt;sVNwheYXxxx0QNqfj_xePWwhxVbraZc6pS4FNyHQzVe2KRgv7s6tjKrZg660zYhotfG0_W62rm0UA01XkVqBX4dNUls5pA7dWyjXMRUltbsjtsA&amp;lt;/session_key&amp;gt;
  &amp;lt;checkpoint_dir&amp;gt;/opt/splunk/var/lib/splunk/modinputs/TA-Akamai_SIEM&amp;lt;/checkpoint_dir&amp;gt;
  &amp;lt;configuration/&amp;gt;
&amp;lt;/input&amp;gt;&lt;/LI-CODE&gt;&lt;P&gt;&lt;span class="lia-unicode-emoji" title=":glowing_star:"&gt;🌟&lt;/span&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;Did this answer help you?&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;If so, please consider:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Adding karma to show it was useful&lt;/LI&gt;&lt;LI&gt;Marking it as the solution if it resolved your issue&lt;/LI&gt;&lt;LI&gt;Commenting if you need any clarification&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Your feedback encourages the volunteers in this community to continue contributing&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 15 Apr 2025 21:02:33 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/quot-Akamai-Security-Incident-Event-Manager-API-quot-not-found/m-p/744219#M118238</guid>
      <dc:creator>livehybrid</dc:creator>
      <dc:date>2025-04-15T21:02:33Z</dc:date>
    </item>
  </channel>
</rss>

