<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: &amp;quot;Windows Event Code Security Analysis&amp;quot; not work in Installation</title>
    <link>https://community.splunk.com/t5/Installation/quot-Windows-Event-Code-Security-Analysis-quot-not-work/m-p/558267#M7555</link>
    <description>&lt;P&gt;I didn't explain it well enough.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;1) Remove the current app&lt;BR /&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; opt/splunk/bin/splunk remove app splunk_wineventcode_secanalysis-master&lt;BR /&gt;2) Download new splunk_wineventcode_secanalysis-master.zip from github&lt;/P&gt;&lt;P&gt;3)&amp;nbsp;Extract the file. and rename the folders in the folder.&lt;BR /&gt;　splunk_wineventcode_secanalysis-master/splunk_wineventcode_secanalysis&lt;STRONG&gt;-master&lt;/STRONG&gt;/appserver(bin,default...)&lt;BR /&gt;↓&lt;BR /&gt;splunk_wineventcode_secanalysis-master/splunk_wineventcode_secanalysis/appserver(bin,default...)&lt;/P&gt;&lt;P&gt;4)&amp;nbsp;Compress the folder&lt;BR /&gt;　splunk_wineventcode_secanalysis/appserver(bin,default...)　→　splunk_wineventcode_secanalysis.zip&lt;/P&gt;&lt;P&gt;5)&amp;nbsp;&lt;SPAN&gt;Import splunk_wineventcode_secanalysis.zip from "install app from file".&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;Your environment is fine.&lt;/P&gt;&lt;P&gt;I hope your problem is solved soon.&lt;/P&gt;</description>
    <pubDate>Mon, 05 Jul 2021 04:57:17 GMT</pubDate>
    <dc:creator>mamesuke</dc:creator>
    <dc:date>2021-07-05T04:57:17Z</dc:date>
    <item>
      <title>"Windows Event Code Security Analysis" not work</title>
      <link>https://community.splunk.com/t5/Installation/quot-Windows-Event-Code-Security-Analysis-quot-not-work/m-p/549290#M7356</link>
      <description>&lt;P&gt;Hi, my name is hamanako.&lt;/P&gt;&lt;P&gt;I would like to use "Windows Event Code Security Analysis", but when I select the "Lookup OverView" or "Table Analysis" menu, I get the following error.&lt;/P&gt;&lt;P&gt;Please let me know how to solve this problem.&lt;/P&gt;&lt;P&gt;Error message:&lt;BR /&gt;&amp;nbsp; The app you requested is not available on "splunk_wineventcode_secanalysis".&lt;BR /&gt;&amp;nbsp; The app you requested is not available on this system. Check the spelling of the app, or choose another from the following list:&lt;/P&gt;&lt;P&gt;Environment:&lt;BR /&gt;&amp;nbsp; OS:&amp;nbsp; Windows 2012&lt;BR /&gt;&amp;nbsp; Splunk Enterprise 8.1.2 (Free)&lt;/P&gt;&lt;P&gt;&amp;nbsp; Windows Event Code Security Analysis Version 1.3&lt;BR /&gt;&amp;nbsp; 　 file name: splunk_wineventcode_secanalysis&lt;BR /&gt;&lt;A href="https://github.com/stressboi/splunk_wineventcode_secanalysis" target="_blank" rel="noopener"&gt;https://github.com/stressboi/splunk_wineventcode_secanalysis&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 26 Apr 2021 02:21:21 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/quot-Windows-Event-Code-Security-Analysis-quot-not-work/m-p/549290#M7356</guid>
      <dc:creator>hamanako</dc:creator>
      <dc:date>2021-04-26T02:21:21Z</dc:date>
    </item>
    <item>
      <title>Re: "Windows Event Code Security Analysis" not work</title>
      <link>https://community.splunk.com/t5/Installation/quot-Windows-Event-Code-Security-Analysis-quot-not-work/m-p/557951#M7544</link>
      <description>&lt;P&gt;Please change the link to the following.&lt;/P&gt;&lt;P data-unlink="true"&gt;https://&amp;lt;hostname&amp;gt;/en-US/app/splunk_wineventcode_secanalysis/lookup_overview?&amp;nbsp;&lt;/P&gt;&lt;P&gt;↓&lt;/P&gt;&lt;P&gt;https://&amp;lt;hostname&amp;gt;/en-US/app/splunk_wineventcode_secanalysis&lt;STRONG&gt;-master&lt;/STRONG&gt;/lookup_overview?&lt;/P&gt;</description>
      <pubDate>Thu, 01 Jul 2021 02:42:21 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/quot-Windows-Event-Code-Security-Analysis-quot-not-work/m-p/557951#M7544</guid>
      <dc:creator>mamesuke</dc:creator>
      <dc:date>2021-07-01T02:42:21Z</dc:date>
    </item>
    <item>
      <title>Re: "Windows Event Code Security Analysis" not work</title>
      <link>https://community.splunk.com/t5/Installation/quot-Windows-Event-Code-Security-Analysis-quot-not-work/m-p/558034#M7546</link>
      <description>&lt;P&gt;&amp;gt;&amp;gt; mamesuke&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you very much for your answer.&lt;BR /&gt;I was able to show the "Lookup Overview" by adding "-master" to the link.&lt;/P&gt;&lt;P&gt;How can I get the "Lookup Overview" to appear when I click the "Lookup Overview" menu from the "Windows Event Code Security Analysis" screen?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 01 Jul 2021 14:42:11 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/quot-Windows-Event-Code-Security-Analysis-quot-not-work/m-p/558034#M7546</guid>
      <dc:creator>hamanako</dc:creator>
      <dc:date>2021-07-01T14:42:11Z</dc:date>
    </item>
    <item>
      <title>Re: "Windows Event Code Security Analysis" not work</title>
      <link>https://community.splunk.com/t5/Installation/quot-Windows-Event-Code-Security-Analysis-quot-not-work/m-p/558158#M7548</link>
      <description>&lt;P&gt;Please remove the app and install it again.&lt;/P&gt;&lt;P&gt;If you download it from github, it will be named "splunk_wineventcode_secanalysis-master.zip".&lt;/P&gt;&lt;P&gt;But when you add it to your splunk app, rename the zip file as follows&lt;/P&gt;&lt;P&gt;splunk_wineventcode_secanalysis-master.zip&lt;/P&gt;&lt;P&gt;↓　　　remove "-master"&lt;/P&gt;&lt;P&gt;splunk_wineventcode_secanalysis.zip&lt;/P&gt;</description>
      <pubDate>Fri, 02 Jul 2021 13:13:13 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/quot-Windows-Event-Code-Security-Analysis-quot-not-work/m-p/558158#M7548</guid>
      <dc:creator>mamesuke</dc:creator>
      <dc:date>2021-07-02T13:13:13Z</dc:date>
    </item>
    <item>
      <title>Re: "Windows Event Code Security Analysis" not work</title>
      <link>https://community.splunk.com/t5/Installation/quot-Windows-Event-Code-Security-Analysis-quot-not-work/m-p/558225#M7552</link>
      <description>&lt;P&gt;&amp;gt;&amp;gt; mamesuke&lt;/P&gt;&lt;P&gt;I followed the instructions you provided, but to no avail.&lt;/P&gt;&lt;P&gt;&amp;nbsp;1) Remove the current app&lt;BR /&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; opt/splunk/bin/splunk remove app splunk_wineventcode_secanalysis-master&lt;BR /&gt;&amp;nbsp;2) Download new splunk_wineventcode_secanalysis-master.zip from github&lt;BR /&gt;&amp;nbsp;3) Rename the file to "splunk_wineventcode_secanalysis.zip"&lt;BR /&gt;&amp;nbsp;4) Import splunk_wineventcode_secanalysis.zip from "install app from file".&lt;/P&gt;&lt;P&gt;On github, there is the following description&lt;BR /&gt;"I haven't done anything with the "properly populated signature_id field!" because I don't know how to do that, is this relevant here?&lt;/P&gt;&lt;P&gt;　"REQUIRES COMMON INFORMATION MODEL 4.14+ with properly populated signature_id field!"&lt;/P&gt;&lt;P&gt;Environment:&lt;BR /&gt;# /opt/splunk/bin/splunk display app&lt;BR /&gt;&amp;nbsp; Splunk_SA_CIM CONFIGURED ENABLED INVISIBLE&lt;BR /&gt;&amp;nbsp; Splunk_TA_windows UNCONFIGURED ENABLED INVISIBLE&lt;BR /&gt;&amp;nbsp; splunk_wineventcode_secanalysis-master UNCONFIGURED ENABLED VISIBLE&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 03 Jul 2021 10:16:43 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/quot-Windows-Event-Code-Security-Analysis-quot-not-work/m-p/558225#M7552</guid>
      <dc:creator>hamanako</dc:creator>
      <dc:date>2021-07-03T10:16:43Z</dc:date>
    </item>
    <item>
      <title>Re: "Windows Event Code Security Analysis" not work</title>
      <link>https://community.splunk.com/t5/Installation/quot-Windows-Event-Code-Security-Analysis-quot-not-work/m-p/558267#M7555</link>
      <description>&lt;P&gt;I didn't explain it well enough.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;1) Remove the current app&lt;BR /&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; opt/splunk/bin/splunk remove app splunk_wineventcode_secanalysis-master&lt;BR /&gt;2) Download new splunk_wineventcode_secanalysis-master.zip from github&lt;/P&gt;&lt;P&gt;3)&amp;nbsp;Extract the file. and rename the folders in the folder.&lt;BR /&gt;　splunk_wineventcode_secanalysis-master/splunk_wineventcode_secanalysis&lt;STRONG&gt;-master&lt;/STRONG&gt;/appserver(bin,default...)&lt;BR /&gt;↓&lt;BR /&gt;splunk_wineventcode_secanalysis-master/splunk_wineventcode_secanalysis/appserver(bin,default...)&lt;/P&gt;&lt;P&gt;4)&amp;nbsp;Compress the folder&lt;BR /&gt;　splunk_wineventcode_secanalysis/appserver(bin,default...)　→　splunk_wineventcode_secanalysis.zip&lt;/P&gt;&lt;P&gt;5)&amp;nbsp;&lt;SPAN&gt;Import splunk_wineventcode_secanalysis.zip from "install app from file".&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;Your environment is fine.&lt;/P&gt;&lt;P&gt;I hope your problem is solved soon.&lt;/P&gt;</description>
      <pubDate>Mon, 05 Jul 2021 04:57:17 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/quot-Windows-Event-Code-Security-Analysis-quot-not-work/m-p/558267#M7555</guid>
      <dc:creator>mamesuke</dc:creator>
      <dc:date>2021-07-05T04:57:17Z</dc:date>
    </item>
    <item>
      <title>Re: "Windows Event Code Security Analysis" not work</title>
      <link>https://community.splunk.com/t5/Installation/quot-Windows-Event-Code-Security-Analysis-quot-not-work/m-p/558660#M7566</link>
      <description>&lt;P&gt;&amp;gt;&amp;gt; mamesuke&lt;/P&gt;&lt;P&gt;Special Thanks!&lt;/P&gt;&lt;P&gt;By following the instructions you provided, the app worked as expected.&lt;BR /&gt;I was finally able to solve the problem.&lt;/P&gt;&lt;P&gt;I apologize for the late reply.&lt;BR /&gt;Thank you very much for your detailed explanation.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 08 Jul 2021 10:10:33 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/quot-Windows-Event-Code-Security-Analysis-quot-not-work/m-p/558660#M7566</guid>
      <dc:creator>hamanako</dc:creator>
      <dc:date>2021-07-08T10:10:33Z</dc:date>
    </item>
  </channel>
</rss>

