Recorded Future Integration #12237
-
Version2.4.40 Installation MethodSecurity Onion ISO image Descriptionconfiguration Installation TypeDistributed Locationairgap Hardware SpecsMeets minimum requirements CPU8 RAM32 Storage for /3TB Storage for /nsm10TB Network Traffic Collectionspan port Network Traffic SpeedsLess than 1Gbps StatusYes, all services on all nodes are running OK Salt StatusNo, there are no failures LogsNo, there are no additional clues DetailI am trying to add the Recorded Future Integration but I see no events being generated in the data stream. Are there any troubleshooting tips or has anyone had any success with this integration that provide any guidance. Thank you very much. Guidelines
|
Beta Was this translation helpful? Give feedback.
Replies: 2 comments 6 replies
-
Do you see an index created? |
Beta Was this translation helpful? Give feedback.
-
Just to add some closure here. It turns out the API key that I had was for version 1 and the Elastic integration uses version 2 of Recorded Future's API. Once I had them cut me a new key, all was well. Thank you @cm-ops for helping me troubleshoot this one. FYI, the elastic agent logs were extremely helpful: |
Beta Was this translation helpful? Give feedback.
Just to add some closure here. It turns out the API key that I had was for version 1 and the Elastic integration uses version 2 of Recorded Future's API. Once I had them cut me a new key, all was well. Thank you @cm-ops for helping me troubleshoot this one. FYI, the elastic agent logs were extremely helpful:
/opt/Elastic/Agent