Quantcast
Channel: Q&A related to Splunk for Palo Alto Networks
Viewing all articles
Browse latest Browse all 121

How to completely remove remote data functionality in Splunk for Palo Alto Networks?

$
0
0

Environment:
Windows
Splunk 5.0.4
Splunk for Palo Alto Networks 3.3.1

I am looking to install the Splunk for Palo Alto networks in an environment where Splunk has no access to the outside world. That being said, geolocation, wildfire, and pretty much everything that needs to talk to a third party will not work.

Are there steps I can take to disable the attempts to query the outside world? Attempts to access disallowed locations are logged/alerted on, and I would like to remove as much noise as possible.

I also get the following errors when I access the app because I have not installed the geolocation modules (because they wouldn’t work anyway). And the start page just hangs at "Loading...". How do I prevent these pop-ups? And is there a workaround for the PAN Overview page?

  • Splunk encountered the following unknown module: "GoogleMaps" . The view may not load properly.
  • Splunk encountered the following unknown module: "GeoDrilldown" . The view may not load properly.

Viewing all articles
Browse latest Browse all 121

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>