Getting Data In

Misp42

Splunkers2
Observer

Hey everyone I am using the misp42slunk app but can't get the events and I don't see any errors what am I doing wrong

Splunkers2_0-1749177219654.png

 

Labels (1)
0 Karma

kiran_panchavat
SplunkTrust
SplunkTrust

@Splunkers2 Check this https://www.reddit.com/r/Splunk/comments/17msvh2/misp_integration_error/ 

Did this help? If yes, please consider giving kudos, marking it as the solution, or commenting for clarification — your feedback keeps the community going!
0 Karma

PickleRick
SplunkTrust
SplunkTrust

Amd what events are you expecting? As per the TA description, it provides custom search commands, not inputs.

0 Karma

Splunkers2
Observer

Would we be able to automatically run the misp_alert_sighting command based on traffic matching?

0 Karma
Get Updates on the Splunk Community!

Splunk Decoded: Service Maps vs Service Analyzer Tree View vs Flow Maps

It’s Monday morning, and your phone is buzzing with alert escalations – your customer-facing portal is running ...

What’s New in Splunk Observability – September 2025

What's NewWe are excited to announce the latest enhancements to Splunk Observability, designed to help ITOps ...

Fun with Regular Expression - multiples of nine

Fun with Regular Expression - multiples of nineThis challenge was first posted on Slack #regex channel ...