All Apps and Add-ons

Qualys App for Splunk Enterprise: Vulnerability data download is not working

shaileshmali
Path Finder

Has anybody been able to make this app work. my authentication works , i get kb downloaded , but vulnerability data download does not work.

Even though api access was enabled vulnerability data download was not working , Qualys support did fix this issue , API error has stopped but still vulnerability download is not working. i am still following up with Qualys to check if still they need to make any config changes on their side.

0 Karma

fulldanad
Path Finder

Yes, it finally worked for me.

Initially the default cron time was never used.

So I changed it for a number of seconds and it does now work properly.

Check this parameter in :
- Data Input
- Scripts
- $SPLUNK_HOME/etc/apps/qualys_splunk_app/bin/qualys_detection_logger.sh

Of yourse, you also have need to have the feature api enabled by Qualys which come with a price...

Regards

0 Karma

akumarkh
New Member

I am also facing the same issue. Any clue please?

0 Karma

fulldanad
Path Finder

same here, any news on your side ?

0 Karma
Get Updates on the Splunk Community!

Tech Talk Recap | Mastering Threat Hunting

Mastering Threat HuntingDive into the world of threat hunting, exploring the key differences between ...

Observability for AI Applications: Troubleshooting Latency

If you’re working with proprietary company data, you’re probably going to have a locally hosted LLM or many ...

Splunk AI Assistant for SPL vs. ChatGPT: Which One is Better?

In the age of AI, every tool promises to make our lives easier. From summarizing content to writing code, ...