Getting Data In

Checkpoint opsec lea 4.0 error with Checkpoint R80

ektasiwani
Communicator

Hi,

I am using Checkpoint OPSEC LEA 4.0
On running search i am getting this error message.

Error 'Could not find all of the specified destination fields in the lookup table.' for conf 'opsec:anti_malware' and lookup table 'checkpoint_vendor_info_lookup'.
Error 'Could not find all of the specified destination fields in the lookup table.' for conf 'opsec:anti_virus' and lookup table 'checkpoint_vendor_info_lookup'.
Error 'Could not find all of the specified destination fields in the lookup table.' for conf 'opsec:audit' and lookup table 'checkpoint_vendor_info_lookup'.
Error 'Could not find all of the specified destination fields in the lookup table.' for conf 'opsec:smartdefense' and lookup table 'checkpoint_vendor_info_lookup'.
Error 'Could not find all of the specified destination fields in the lookup table.' for conf 'opsec:threat_emulation' and lookup table 'checkpoint_vendor_info_lookup'.
Error 'Could not find all of the specified destination fields in the lookup table.' for conf 'opsec:vpn' and lookup table 'checkpoint_vendor_info_lookup'.
Error 'Could not find all of the specified lookup fields in the lookup table.' for conf 'opsec:audit' and lookup table 'checkpoint_audit_action_lookup'.

How can i solve this. And why i am getting this error.

Thanks

Tags (3)
0 Karma
1 Solution

ektasiwani
Communicator

Hi,

I solved this error by myself, may be it helps other.
I had two different version of Checkpoint opsec lea installed on my splunk.
I uninstalled older version and removed the folder, now i am not getting above error.

Thanks

View solution in original post

ektasiwani
Communicator

Hi,

I solved this error by myself, may be it helps other.
I had two different version of Checkpoint opsec lea installed on my splunk.
I uninstalled older version and removed the folder, now i am not getting above error.

Thanks

Get Updates on the Splunk Community!

Splunk + ThousandEyes: Correlate frontend, app, and network data to troubleshoot ...

 Are you tired of troubleshooting delays caused by siloed frontend, application, and network data? We've got a ...

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

🔐 Trust at Every Hop: How mTLS in Splunk Enterprise 10.0 Makes Security Simpler

From Idea to Implementation: Why Splunk Built mTLS into Splunk Enterprise 10.0  mTLS wasn’t just a checkbox ...