All Apps and Add-ons

No Output for sourcetype=cpu | head 20

suparn777
Explorer

Hello Team,

I have tried sar and it gives proper output.Systat is also installed properly.
However i get no output for sourcetype=cpu. I tried variety of methods but none of them work.

Can you please give me a simple solution to troubleshoot the issue?

Thanks

0 Karma
2 Solutions

lauMarot
Path Finder

try index=os sourcetype=cpu | head 20

View solution in original post

araitz
Splunk Employee
Splunk Employee
  1. Look in index=_internal host=your_hosts_name, specifically for errors and probably from the ExecProcessor
  2. Run the script manually:

    ./splunk cmd ../etc/apps/Splunk_TA_nix/bin/cpu.sh

  3. Let us know what platform this is happening on

View solution in original post

araitz
Splunk Employee
Splunk Employee
  1. Look in index=_internal host=your_hosts_name, specifically for errors and probably from the ExecProcessor
  2. Run the script manually:

    ./splunk cmd ../etc/apps/Splunk_TA_nix/bin/cpu.sh

  3. Let us know what platform this is happening on

suparn777
Explorer

Hello Guys,

Thanks a lot araitz and lauMarot. Now i have enabled the inputs via Splunk Add on for Nix and it works.

However i had one last query. I am not allowed into /opt folder as Permission is denied by linux. However i can use sudo command for any other tasks which require root permissions.

By using sudo i am unable to get into opt folder. Is there any other way in which i can access this folder?

Thanks

0 Karma

araitz
Splunk Employee
Splunk Employee

Sorry, meant Splunk_TA_nix.

0 Karma

suparn777
Explorer

Hello araitz,

I am not able to find any exec processor errors when i run the command index=_internal host=your_hosts_name.

Also I am unable to find this folder /apps/TA-nix/bin/cpu.sh
under etc.

My platform is Ubuntu 12.04.4 LTS

Please let me know further steps.

Thanks

0 Karma

lauMarot
Path Finder

try index=os sourcetype=cpu | head 20

lauMarot
Path Finder

you should be able to enable it throught "Splunk for Unix Add-on: Setup" http://your_splunk_server:8000/en-US/app/Splunk_TA_nix/setup
script should be in /opt/splunk/etc/apps/splunk_app_for_nix/install/Splunk_TA_nix/bin/cpu.sh

0 Karma

suparn777
Explorer

Splunk Add on for Nix is installed and unfortunately i am not able to find cpu.sh in order to enable it. i have already installed systat.

My OS Version is Ubuntu 12.04.4 LTS

0 Karma

lauMarot
Path Finder

splunk add-on for *nix is installed and cpu.sh script enable ?

0 Karma

suparn777
Explorer

Hello lauMarot,

Unfortunately this gives me No results found.

0 Karma
Get Updates on the Splunk Community!

What's new in Splunk Cloud Platform 9.1.2312?

Hi Splunky people! We are excited to share the newest updates in Splunk Cloud Platform 9.1.2312! Analysts can ...

What’s New in Splunk Security Essentials 3.8.0?

Splunk Security Essentials (SSE) is an app that can amplify the power of your existing Splunk Cloud Platform, ...

Let’s Get You Certified – Vegas-Style at .conf24

Are you ready to level up your Splunk game? Then, let’s get you certified live at .conf24 – our annual user ...