Skip to content

Troubleshooting

P4T12ICK edited this page Jun 10, 2019 · 2 revisions

If the update of Sigma detection rules was not working, you can find here some typical troubleshooting topics, which you can test before opening an Issue.

Manually run the update script

Run the script under ../etc/apps/sigma_hunting_app/bin/update.sh and check if it throws some errors.

Check Packages

Check if the packages python3, pyyaml, jinja2 and sigmac are installed correctly and if the user, which runs Splunk, can access the packages.

Clone this wiki locally