Splunk Enterprise Security

Palo Alto Networks Add-on 6.0.2: Why can't I download threat intelligence from AutoFocus' MineMeld in Splunk Enterprise Security?

stanleyleung
New Member

Palo Alto Networks Add-on 6.0.2 - fail to download threat intelligence from AutoFocus' MineMeld in Splunk Enterprise Security

I installed Palo Alto Networks Add-on 6.0.2 and configured it to download threat intelligence from MineMeld. Some download tasks were added to Enterprise Security Intelligence Download, however, the list is empty and i got the below error message for 'IP' list(same error for script of 'domain' and 'url').

Health Check: msg="A script exited abnormally with exit status: 1" input="./opt/splunk/etc/apps/Splunk_TA_paloalto/bin/minemeld_feed.py" stanza="minemeld_feed://AutoFocus_Threat_Intelligence_IP"
0 Karma
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.


Introducing Unified TDIR with the New Enterprise Security 8.2

Read the blog
Get Updates on the Splunk Community!

OpenTelemetry for Legacy Apps? Yes, You Can!

This article is a follow-up to my previous article posted on the OpenTelemetry Blog, "Your Critical Legacy App ...

UCC Framework: Discover Developer Toolkit for Building Technology Add-ons

The Next-Gen Toolkit for Splunk Technology Add-on Development The Universal Configuration Console (UCC) ...

.conf25 Community Recap

Hello Splunkers, And just like that, .conf25 is in the books! What an incredible few days — full of learning, ...