I recently installed brand new Splunk 8.2.2, then installed Splunk ES 6.6.0 on it, after Splunk ES installed and configured, I restarted Splunk from CLI, from that I got below error message:
"Checking conf files for problems... Invalid key in stanza [notable] in /opt/splunk/etc/apps/SA-ThreatIntelligence/default/alert_actions.conf, line 84: param.default_disposition (value: )."
There is no such error on Splunk ES 6.4.1, and there is also no such key, it's new from ES 6.6.0, who knows how to fix it? many thanks!