All Apps and Add-ons

Qualys logs don't arrive at Splunk enterprise

erlindemberg
Explorer

Hello,

I have Qualys on my Splunk Enterprise installation, but since 08/11/2019 the logs have stopped coming.

I changed the data in the SET UP of Qualys in Splunk APP, with proxy for direct output to the internet without restriction or user attention. I also changed the Qualys user settings to a fully admin USER within the QUalys API, but even so the logs that previously arrived from sourcetype = qualys: * are no longer received.

Here, I use the APP VM QUALYS and APP WAS QUALYS.

0 Karma
Get Updates on the Splunk Community!

Splunk App Dev Community Updates – What’s New and What’s Next

Welcome to your go-to roundup of everything happening in the Splunk App Dev Community! Whether you're building ...

The Latest Cisco Integrations With Splunk Platform!

Join us for an exciting tech talk where we’ll explore the latest integrations in Cisco + Splunk! We’ve ...

Enterprise Security Content Update (ESCU) | New Releases

In April, the Splunk Threat Research Team had 2 releases of new security content via the Enterprise Security ...