All Apps and Add-ons

Palo Alto Networks Add-on for Splunk

maurobissante
Explorer

Hi,

I'm trying to use the "Palo Alto Networks Add-on for Splunk", but when I try to configure it, the page always remains loading.
I opened the splunkd.log and found this error:

11-25-2019 14:53:52.330 +0100 ERROR ScriptRunner - stderr from 'D:\Splunk\bin\Python3.exe D:\Splunk\bin\runScript.py setup': SyntaxError: invalid syntax
11-25-2019 14:53:52.330 +0100 ERROR ScriptRunner - stderr from 'D:\Splunk\bin\Python3.exe D:\Splunk\bin\runScript.py setup': Traceback (most recent call last):
11-25-2019 14:53:52.330 +0100 ERROR ScriptRunner - stderr from 'D:\Splunk\bin\Python3.exe D:\Splunk\bin\runScript.py setup': File "D:\Splunk\bin\runScript.py", line 82, in
11-25-2019 14:53:52.330 +0100 ERROR ScriptRunner - stderr from 'D:\Splunk\bin\Python3.exe D:\Splunk\bin\runScript.py setup': exec(open(REAL_SCRIPT_NAME).read())
11-25-2019 14:53:52.330 +0100 ERROR ScriptRunner - stderr from 'D:\Splunk\bin\Python3.exe D:\Splunk\bin\runScript.py setup': File "", line 4, in
11-25-2019 14:53:52.330 +0100 ERROR ScriptRunner - stderr from 'D:\Splunk\bin\Python3.exe D:\Splunk\bin\runScript.py setup': File "D:\Splunk\etc\apps\Splunk_TA_paloalto\bin\splunk_ta_paloalto\splunktaucclib\rest_handler\endpoint\validator.py", line 388
11-25-2019 14:53:52.330 +0100 ERROR ScriptRunner - stderr from 'D:\Splunk\bin\Python3.exe D:\Splunk\bin\runScript.py setup': except ValueError, exc:
11-25-2019 14:53:52.331 +0100 ERROR ScriptRunner - stderr from 'D:\Splunk\bin\Python3.exe D:\Splunk\bin\runScript.py setup': ^

Can anyone help me?

Thanks, Mauro

0 Karma

ivanreis
Builder

Per the error message, this addon is not prepared to run on python version 3.
Edit the server.conf at $Splunk_home/etc/system/local and add the parameter below at [general] stanza, save file and restart splunk service

[general]
python.version=python2

0 Karma
Get Updates on the Splunk Community!

Automatic Discovery Part 1: What is Automatic Discovery in Splunk Observability Cloud ...

If you’ve ever deployed a new database cluster, spun up a caching layer, or added a load balancer, you know it ...

Real-Time Fraud Detection: How Splunk Dashboards Protect Financial Institutions

Financial fraud isn't slowing down. If anything, it's getting more sophisticated. Account takeovers, credit ...

Splunk + ThousandEyes: Correlate frontend, app, and network data to troubleshoot ...

 Are you tired of troubleshooting delays caused by siloed frontend, application, and network data? We've got a ...