Splunk Enterprise

Auto Update MaxMind Database

VijaySrrie
Builder

Hi Team,

We are trying to install - Auto Update MaxMind Database into our splunk

https://splunkbase.splunk.com/app/5482   --> This is the splunk app  

We have the account id and the license key

While testing this by running command - | maxminddbupdate 

We got below error 

HTTPSConnectionPool(host='download.maxmind.com', port=443): Max retries exceeded with url: /geoip/databases/GeoLite2-City/download?suffix=tar.gz (Caused by SSLError(SSLCertVerificationError(1, '[SSL: CERTIFICATE_VERIFY_FAILED] certificate verify failed: unable to get local issuer certificate (_ssl.c:1106)')))

Labels (1)
0 Karma

VatsalJagani
SplunkTrust
SplunkTrust

@VijaySrrie- It seems you have Proxy issue or Proxy SSL issue. App's GitHub page's Configuration section describe solution to this Proxy or SSL problem.

https://github.com/CrossRealms/Splunk-App-Auto-Update-MaxMind-Database

 

I hope this helps!!! Kindly upvote if this helps!!!

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Splunk Auto Ingestion Parallel Pipeline Scaling

Why this feature matters Many Splunk environments experience ingestion pressure long before the host is fully ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...