All Apps and Add-ons

Installing Palo Alto App

jmilles
New Member

I am attempting to install the Palo Alto App on Splunk, but every time I extract the files into the App folder, Splunk will refuse to restart. Is there something I'm missing?

0 Karma

sgtserge
New Member

You have to copy the full extracted directory-tree under etc/apps

e.g c:\windows\program files\splunk\etc\apps\SplunkforPaloAltoNetworks\SplunkforPaloAltoNetworks...

0 Karma

jchiodo
New Member

I forgot to mention that this is running on Windows Server 2008 R2. I get the following error when attempting to restart Splunk:

Log Name: Application
Source: Splunkweb
Date: 12/5/2012 11:52:28 AM
Event ID: 3
Task Category: None
Level: Error
Keywords: Classic
User: N/A
Computer: ISO-SYSLOG
Description:
The instance's SvcRun() method failed
File "C:\Program Files\Splunk\Python-2.7\Lib\site-packages\win32\win32serviceutil.py", line 785, in SvcRun
self.SvcDoRun()
File "C:\Program Files\Splunk\bin\SplunkWebService.py", line 39, in SvcDoRun
from splunk.appserver.mrsparkle import root
File "C:\Program Files\Splunk\Python-2.7\Lib\site-packages\splunk\appserver\mrsparkle\root.py", line 556, in
sys.exit(1)
: 1
Event Xml:



3
2
0
0x80000000000000

880
Application
ISO-SYSLOG



File "C:\Program Files\Splunk\Python-2.7\Lib\site-packages\win32\win32serviceutil.py", line 785, in SvcRun
self.SvcDoRun()
File "C:\Program Files\Splunk\bin\SplunkWebService.py", line 39, in SvcDoRun
from splunk.appserver.mrsparkle import root
File "C:\Program Files\Splunk\Python-2.7\Lib\site-packages\splunk\appserver\mrsparkle\root.py", line 556, in <module>
sys.exit(1)

<type 'exceptions.SystemExit'>
1

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...