All Apps and Add-ons

Qualys logs don't arrive at Splunk enterprise

erlindemberg
Explorer

Hello,

I have Qualys on my Splunk Enterprise installation, but since 08/11/2019 the logs have stopped coming.

I changed the data in the SET UP of Qualys in Splunk APP, with proxy for direct output to the internet without restriction or user attention. I also changed the Qualys user settings to a fully admin USER within the QUalys API, but even so the logs that previously arrived from sourcetype = qualys: * are no longer received.

Here, I use the APP VM QUALYS and APP WAS QUALYS.

0 Karma
Get Updates on the Splunk Community!

Using Machine Learning for Hunting Security Threats

WATCH NOW Seeing the exponential hike in global cyber threat spectrum, organizations are now striving more for ...

Observability Newsletter Highlights | March 2023

 March 2023 | Check out the latest and greatestSplunk APM's New Tag Filter ExperienceSplunk APM has updated ...

Security Newsletter Updates | March 2023

 March 2023 | Check out the latest and greatestUnify Your Security Operations with Splunk Mission Control The ...