Thanks, but I tried setting it up several times..the same error all over again and I cannot even add a single sensor in the splunk.. when I tried to manually add input.conf and put the script for 2.0 below.
[script://$SPLUNK_HOME/etc/apps/Splunk_CiscoIPS/bin/get_ips_feed.py 172.21.21.10 1]
disabled = 0
index = main
interval = 1
source = SDEE
sourcetype = cisco_ips_syslog
passAuth = splunk-system-user
I'm getting "could not get IPS 172.21.21.10 credentials from splunk: ResourceNotFound: [HTTP 404]
Regards
... View more