Splunk is not receiving any data from Advanced Threat Protection (ATP).

book

Article ID: 171449

calendar_today

Updated On:

Products

Advanced Threat Protection Platform

Issue/Introduction

When proxy settings where changed in the ATP UI, Splunk was no longer receiving data.

Resolution

This issue has been addressed in ATP 3.1.  Please upgrade when the new release is available.

If you are not able to update in a timely manner, the workaround is to reboot the ATP appliance if you have made changes to the proxy settings in the ATP UI.