Getting Data In

Checkpoint opsec lea 4.0 error with Checkpoint R80

ektasiwani
Communicator

Hi,

I am using Checkpoint OPSEC LEA 4.0
On running search i am getting this error message.

Error 'Could not find all of the specified destination fields in the lookup table.' for conf 'opsec:anti_malware' and lookup table 'checkpoint_vendor_info_lookup'.
Error 'Could not find all of the specified destination fields in the lookup table.' for conf 'opsec:anti_virus' and lookup table 'checkpoint_vendor_info_lookup'.
Error 'Could not find all of the specified destination fields in the lookup table.' for conf 'opsec:audit' and lookup table 'checkpoint_vendor_info_lookup'.
Error 'Could not find all of the specified destination fields in the lookup table.' for conf 'opsec:smartdefense' and lookup table 'checkpoint_vendor_info_lookup'.
Error 'Could not find all of the specified destination fields in the lookup table.' for conf 'opsec:threat_emulation' and lookup table 'checkpoint_vendor_info_lookup'.
Error 'Could not find all of the specified destination fields in the lookup table.' for conf 'opsec:vpn' and lookup table 'checkpoint_vendor_info_lookup'.
Error 'Could not find all of the specified lookup fields in the lookup table.' for conf 'opsec:audit' and lookup table 'checkpoint_audit_action_lookup'.

How can i solve this. And why i am getting this error.

Thanks

Tags (3)
0 Karma
1 Solution

ektasiwani
Communicator

Hi,

I solved this error by myself, may be it helps other.
I had two different version of Checkpoint opsec lea installed on my splunk.
I uninstalled older version and removed the folder, now i am not getting above error.

Thanks

View solution in original post

ektasiwani
Communicator

Hi,

I solved this error by myself, may be it helps other.
I had two different version of Checkpoint opsec lea installed on my splunk.
I uninstalled older version and removed the folder, now i am not getting above error.

Thanks

Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...