I just upgraded my main indexer to 6.0.1 and installed the new Splunk App for Unix and Linux. When looking at the hosts, all of my Mac OSX hosts are reporting "unknown - is df.sh enabled?" and "unknown - is cpu.sh enabled?:. If I go search the index I see both cpu and df sourcees for these hosts, however, the app is reporting the errors.
Any help would be appreciated
same issue on splunk 6.1 CentOS 6. with latest Splunk App for Unix and Linux 5.0.3TA..
please suggest temporary solution while you patch this bug......
Any update on this? I upgraded everything to 6.1.3 and it is still broken.
Yes, we have received some bug reports on this. It seems that this is an issue with Splunk 6.0.x on Mac OS X (rather than the Unix add-on itself). I'll update here when we know more.