> Source: [sk182247](https://support.checkpoint.com/results/sk/sk182247)

# sk182247 - Custom Intelligence Feed does not parse all data types

| Property | Value |
|----------|-------|
| Solution ID | sk182247 |
| Date Created | 2024-04-27 |
| Last Modified | 2024-11-05 |
| Technical Level | General |
| Products | Security Gateway |
| Versions | R82, R81.20 |

## Symptoms

- * Custom Intelligence Feed has multiple data types, including URL, IP and Domain.URLs and IPs are enforced, but the domain data type is not enforced.

* Fetching the feed in debug mode by running `$FWDIR/bin/ioc_feeder -f`, shows these errors in *$FWDIR/log/ioc_feeder.elg*:

  ```
  
  [50801 4109342592]@LAB-GW[11 Jul  9:59:03] CIOCCustomFormatParser[1176] ::parse_line: [INFO]  failed to parse line: " "
  [50801 4109342592]@LAB-GW[11 Jul  9:59:03] CIOCCustomFormatParser[428] ::parse_custom_format: [WARN] failed parse 
  [50801 4109342592]@LAB-GW[11 Jul  9:59:03] IOCULimitDBMgr[884] ::Insert: [ERROR]  no table for type     12
  [50801 4109342592]@LAB-GW[11 Jul  9:59:03] IOCULimitDBMgr[884] ::Insert: [ERROR]  no table for type     12
  [50801 4109342592]@LAB-GW[11 Jul  9:59:03] IOCULimitDBMgr[884] ::Insert: [ERROR]  no table for type     12
  [50801 4109342592]@LAB-GW[11 Jul  9:59:03] IOCULimitDBMgr[884] ::Insert: [ERROR]  no table for type     12
  [50801 4109342592]@LAB-GW[11 Jul  9:59:03] IOCULimitDBMgr[884] ::Insert: [ERROR]  no table for type     12
  [50801 4109342592]@LAB-GW[11 Jul  9:59:03] IOCULimitDBMgr[884] ::Insert: [ERROR]  no table for type     12
  [50801 4109342592]@LAB-GW[11 Jul  9:59:03] CIOCCustomFormatParser[127] ::parse: [WARN] 1 observers skipped.
  [50801 4109342592]@LAB-GW[11 Jul  9:59:03] CIOCCustomFormatParser[133] ::parse: [INFO] Finish parsing IOC_LAB
  [50801 4109342592]@LAB-GW[11 Jul  9:59:03] Feed parsed successfully!
  [50801 4109342592]@LAB-GW[11 Jul  9:59:03] Parse feeds ended
  [50801 4109342592]@LAB-GW[11 Jul  9:59:03] ** Feeds Summary: **
  [50801 4109342592]@LAB-GW[11 Jul  9:59:03] Feed name: IOC_LAB, resource: http://10.0.0.100/ioc-app/download.php, fetch: Success, parse: Success, status: Success, Reason: not all observables successfully parsed, problematic (1) are located at /opt/CPsuite-R81.20/fw1/external_ioc/IOC_LAB/IOC_LAB_http_custom.csv.err
  
  ```

  <br />

## Solution

[](https://www.checkpoint.com/support-services/contact-support/)

[Contact Check Point Support](https://www.checkpoint.com/support-services/contact-support/) to get a Hotfix for this issue.

A Support Engineer will make sure the Hotfix is compatible with your environment before providing it.  
For faster resolution and verification please collect CPinfo files from the Security Management and Security Gateways involved in the case.

**Hotfix installation instructions:**   
Refer to [sk168597 - How to install a Hotfix](https://support.checkpoint.com/results/sk/sk168597).

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
