Closed estelae closed 1 month ago
Hi @estelae,
Thank you for opening an issue. I'll be investigating it and I'll get back to you once I learn more about it.
Kind regards, Darek
Hi @estelae
SIEM api can only fetch data starting from 12 hours in the past. So, you may get 400 due to:
from & to needs to be within the past 12 hours from needs to be less than to
Looks like you are using some dummy values for the query params and mostporobalby this is the issue here.
Please let us know if this clarification helps.
Describe the bug SIEM API (https://techdocs.akamai.com/siem-integration/reference/get-configid) has a recipe called
Fetch security event in time-based mode
|Python
that uses this library. It does not work and returns an error.To Reproduce Steps to reproduce the behavior:
Expected behavior For the documentation example to work.
Actual behavior It outputs this error.
Judging from the
instance
above, it appears that only the first query parameter is being recognized. If the&
character is encoded to%26
in the signature generation then theinstance
variable changes to'instance': 'https://{host}/siem/v1/configs/{configid}?from={from}&to={to}&limit={limit}'
, but gives a 401 error for the signature not matching. If the&
character is encoded to%26
in the request and signature, then it returns a 400 error for missing parameters.