All Apps and Add-ons

Upgraded to Splunk 6.1 and Splunk App for PCI Compliance 2.1: Why is PCI app not working properly now?

JeanC
Engager

PS came and upgraded to Splunk 6.1 (.3 I think) and all worked fine. Then upgraded to the newest PCI App 2.?? and now the incident Reviews return an error. Anyone else see this?

0 Karma

joelyon
Explorer

I did the same thing.... upgraded to Ver 6.1.3, then upgraded the PCI app from 2.0 to 2.1...

I ran into a bunch of errors, specifically that the Incident Review panel returned errors.

After working with Support for two or three days, the best answer ended up being making a copy of the appropriate "local" settings and lookup folders, and doing a clean install of PCI 2.1.

This was not fixing the errors, but installing clean so that there were no errors.

Remember to make copies of the lookups that had grown with site specific data.

Recommend consulting Support for guidance on this.

0 Karma

LukeMurphey
Champion

Could you let me know what the error is that you are seeing?

0 Karma
Get Updates on the Splunk Community!

Introduction to Splunk Observability Cloud - Building a Resilient Hybrid Cloud

Introduction to Splunk Observability Cloud - Building a Resilient Hybrid Cloud  In today’s fast-paced digital ...

Observability protocols to know about

Observability protocols define the specifications or formats for collecting, encoding, transporting, and ...

Take Your Breath Away with Splunk Risk-Based Alerting (RBA)

WATCH NOW!The Splunk Guide to Risk-Based Alerting is here to empower your SOC like never before. Join Haylee ...