You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Currently, the code of this add-on for Splunk is Python v2.7, and not compatible with Python v3.
We need to convert the code to be working using Python v3.7 greater. It would also be great that we actually test most of the code without needing Splunk (or even TIE).
Why
Splunk Enterprise v8 rightfully does not support Python v2.7 since EoL.
What
Code should be running with Python v3 (this is minimal work)
Most code should be testable without Splunk, as most functionality is within the script fetching IoCs.
Extend functionality so that upgrading or installing the new version of the add-on is less of a pain.
Revamp the README with more goodies.
This is unconditional, and we need to move on to future. We should not support Python v2.7 any longer, or keep two code bases or keep one compatible with 2 major versions
How
Python code made Python v3 (2to3 to the rescue)
Get rid of requirements.txt: none of the listed packages is needed
Support configuring the Sequence Number in when setting up the add-on
Better naming of the AddOn
Make distributing less a pain, and make sure the filename says what it is, and what version is contained
Logging to file or stderr: painful to use now
Improve more the help when setting the add-on, and also explain in the README.
Learn Splunk!!!!111
The text was updated successfully, but these errors were encountered:
Currently, the code of this add-on for Splunk is Python v2.7, and not compatible with Python v3.
We need to convert the code to be working using Python v3.7 greater. It would also be great that we actually test most of the code without needing Splunk (or even TIE).
Why
Splunk Enterprise v8 rightfully does not support Python v2.7 since EoL.
What
This is unconditional, and we need to move on to future. We should not support Python v2.7 any longer, or keep two code bases or keep one compatible with 2 major versions
How
The text was updated successfully, but these errors were encountered: