Splunk Enterprise Security

inputintelligence command not working

mekhanlarloo
Loves-to-Learn Lots

hi

When I type this command, the following error message is displayed.

| inputintelligence mitre_attack

error command:

Error in 'inputintelligence' command: Inputintelligence does not support threat intel at this time

can you help me, how can i solve my problem?

Labels (1)
Tags (1)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

Splunk Enterprise Security supports threat intelligence and generic intelligence feeds.  The inputintelligence command works only with generic feeds.  It's not explicitly stated in the documentation, but is implied by the command being described in the "Use generic intelligence in search with inputintelligence" section of the ES manual. (https://docs.splunk.com/Documentation/ES/7.3.0/Admin/Useintelinsearch)

---
If this reply helps you, Karma would be appreciated.
0 Karma

mekhanlarloo
Loves-to-Learn Lots

I ran this command elsewhere and it didn't give me this error message.

0 Karma
Get Updates on the Splunk Community!

Index This | Why did the turkey cross the road?

November 2025 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Feel the Splunk Love: Real Stories from Real Customers

Hello Splunk Community,    What’s the best part of hearing how our customers use Splunk? Easy: the positive ...