Splunk Enterprise Security

inputintelligence command not working

mekhanlarloo
Loves-to-Learn Lots

hi

When I type this command, the following error message is displayed.

| inputintelligence mitre_attack

error command:

Error in 'inputintelligence' command: Inputintelligence does not support threat intel at this time

can you help me, how can i solve my problem?

Labels (1)
Tags (1)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

Splunk Enterprise Security supports threat intelligence and generic intelligence feeds.  The inputintelligence command works only with generic feeds.  It's not explicitly stated in the documentation, but is implied by the command being described in the "Use generic intelligence in search with inputintelligence" section of the ES manual. (https://docs.splunk.com/Documentation/ES/7.3.0/Admin/Useintelinsearch)

---
If this reply helps you, Karma would be appreciated.
0 Karma

mekhanlarloo
Loves-to-Learn Lots

I ran this command elsewhere and it didn't give me this error message.

0 Karma
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.


Introducing Unified TDIR with the New Enterprise Security 8.2

Read the blog
Get Updates on the Splunk Community!

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Your Voice Matters! Help Us Shape the New Splunk Lantern Experience

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Building Momentum: Splunk Developer Program at .conf25

At Splunk, developers are at the heart of innovation. That’s why this year at .conf25, we officially launched ...