Splunk Enterprise Security

Palo Alto Networks Add-on 6.0.2: Why can't I download threat intelligence from AutoFocus' MineMeld in Splunk Enterprise Security?

stanleyleung
New Member

Palo Alto Networks Add-on 6.0.2 - fail to download threat intelligence from AutoFocus' MineMeld in Splunk Enterprise Security

I installed Palo Alto Networks Add-on 6.0.2 and configured it to download threat intelligence from MineMeld. Some download tasks were added to Enterprise Security Intelligence Download, however, the list is empty and i got the below error message for 'IP' list(same error for script of 'domain' and 'url').

Health Check: msg="A script exited abnormally with exit status: 1" input="./opt/splunk/etc/apps/Splunk_TA_paloalto/bin/minemeld_feed.py" stanza="minemeld_feed://AutoFocus_Threat_Intelligence_IP"
0 Karma
Get Updates on the Splunk Community!

Modern way of developing distributed application using OTel

Recently, I had the opportunity to work on a complex microservice using Spring boot and Quarkus to develop a ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had 3 releases of new security content via the Enterprise Security ...

Archived Metrics Now Available for APAC and EMEA realms

We’re excited to announce the launch of Archived Metrics in Splunk Infrastructure Monitoring for our customers ...