Deployment Architecture

Put Key Error in OPSEC LEA for Check Point

jchen_splunk
Splunk Employee
Splunk Employee

We configure all correct in the procedure by the following URL:
http://splunk-base.splunk.com/apps/22386/opsec-lea-for-check-point-linux

But during Retrieve "FW1 authentication key", it has the error.
Do you have any idea how to solve it?

[root@splunk linux22]# ./opsec_putkey -ssl -port 18184 192.168.0.97
Please enter secret key:
Please enter secret key again:
fw_ipaddr: cannot get my ipaddr
[root@splunk linux22]#

0 Karma

jchen_splunk
Splunk Employee
Splunk Employee

We found the problem is that the host table is not with local host name.

Just add the host table in /etc/hosts

And the problem is solved.

0 Karma
Get Updates on the Splunk Community!

Automatic Discovery Part 1: What is Automatic Discovery in Splunk Observability Cloud ...

If you’ve ever deployed a new database cluster, spun up a caching layer, or added a load balancer, you know it ...

Real-Time Fraud Detection: How Splunk Dashboards Protect Financial Institutions

Financial fraud isn't slowing down. If anything, it's getting more sophisticated. Account takeovers, credit ...

Splunk + ThousandEyes: Correlate frontend, app, and network data to troubleshoot ...

 Are you tired of troubleshooting delays caused by siloed frontend, application, and network data? We've got a ...