All Apps and Add-ons

Splunk Add-on for Akamai: Why am I not getting an data when I implement TA_Akamai_SIEM integration?

anzianojackson
Engager

I've been trying to figure this out for a bit now. I've installed the TA_Akamai_SIEM_1.2.0 to ingest Akamai Kona WAF logs. I have tested the REST API via command line to pull SIEM data, but when I trying to implement it with the Splunk Add-on, no data comes back.

Error Message from UI:

Unable to initialize modular input "TA-Akamai_SIEM" defined inside the app "TA-Akamai_SIEM": Introspecting scheme=TA-Akamai_SIEM: script running failed (exited with code 127).

I'm running this on a 6.5.3 forwarder.

0 Karma
1 Solution

cpetterborg
SplunkTrust
SplunkTrust

This is probably caused by java not being installed on the server.

View solution in original post

cpetterborg
SplunkTrust
SplunkTrust

This is probably caused by java not being installed on the server.

anzianojackson
Engager

I heart you so much!

0 Karma

iamarkaprabha
Contributor

Hi ,

Yes cpetterborg is correct. I had faced the same issue while integrating Akamai and splunk. The main issue is Java path. The shell script was not able to execute the jar due to java path issue

0 Karma

adri2915
Observer

Hello, please, you could say, how resolve this problem? what do you actions you applicated? 

Thank you

0 Karma
Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...