All Apps and Add-ons

Having issues updating Palo Alto Networks app for Splunk

balbano
Contributor

Hi,

I'm trying to update the Palo Alto App for Splunk but seems like it does not work:

# ./splunk install app /home/balbano/SplunkforPaloAltoNetworks.zip -update 1
Splunk username: $user
Password:

An error occurred:
file could not be opened successfully

Based on my reading looks like Splunk does not like ZIP files.

If that is the case how do I update to the new Palo Alto App?

Any help would be great.

Thanks.
Brian

0 Karma

monzy
Communicator

hello Brian,

please extract the zip file and copy its contents to the $SPLUNK_HOME/etc/apps/
if you have an existing install of the Splunk for Palo Alto App, please backup any files that you may have modified e.g. your inputs.conf file.

more detailed installation instructions are in the README file in the zip.

cheers,

monzy

0 Karma
Get Updates on the Splunk Community!

Learn Splunk Insider Insights, Do More With Gen AI, & Find 20+ New Use Cases You Can ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Buttercup Games: Further Dashboarding Techniques (Part 7)

This series of blogs assumes you have already completed the Splunk Enterprise Search Tutorial as it uses the ...

Stay Connected: Your Guide to April Tech Talks, Office Hours, and Webinars!

What are Community Office Hours? Community Office Hours is an interactive 60-minute Zoom series where ...