How do I resolve a “Source encountered errors while processing logs” alert after setting up GitHub log source in Panther?
Issue
How do I resolve a “Source encountered errors while processing logs” alert after setting up GitHub log source?
Resolution
To resolve this issue make sure you exclude the _check
prefix when setting up your log source as stated in our documentation.
Cause
If you receive this alert shortly after setting up your Github Log Source, the error is likely due to the Github sending a log file containing a string saying: “github audit log streaming check”. This a “check”/“test” file to validate that there are proper permissions to write to a specific GCS bucket.