All Apps and Add-ons

After installing v5.0 I am unable to view inputs tab with spinning circle

uhaba
Explorer

Looking for recommendations on how to resolve a spinning loading circle on the inputs tab of the TA for ServiceNow. I also tried reinstalling the TA and get the same result.

alt text

Yorokobi
SplunkTrust
SplunkTrust

I opened a support case for this issue and discovered that the data collection portion of Splunk's add-on for Service Now does not work with Enterprise Splunk versions 7.3.0 to 7.3.4. This is supposed to be fixed in the upcoming 7.3.5 release. In the meantime, either use a 7.2.x or 8.0.x HF to collect data from Service Now.

I have asked Support to ensure the documentation gets updated to reflect the incompatibility.

nickhills
Ultra Champion

My immediate thought is what are the two notifications in the messages tab?

My second thought is what do you see in the _internal logs for service now?

If my comment helps, please give it a thumbs up!
0 Karma

Yorokobi
SplunkTrust
SplunkTrust

I have this same problem after upgrading from Splunk Enterprise 7.2.1 to 7.3.4 with the previously working 5.0.0 add-on.

I have even gone so far as to stop Splunk, delete the add-on, start Splunk, stop it again, untar the 5.0.0 (and 5.0.1!) add-on, and start Splunk. Both versions display the spinning wheel.

I've copied the Splunk_TA_snow/default/inputs.conf to Splunk_TA_snow/local/inputs.conf with no change in behaviour.

Relevant logs:

$SPLUNK_HOME/var/log/splunk/splunk_ta_snow_main.log
2020-02-19 22:13:51,432 INFO pid=71324 tid=MainThread file=snow.py:stream_events:288 | No configured inputs found. To collect data from ServiceNow, configure new input(s) or update existing input(s) either from Inputs page of the Add-on or manually from inputs.conf.

$SPLUNK_HOME/var/log/splunk/splunkd.log
02-19-2020 22:20:48.589 +0000 INFO ModularInputs - No stanzas found for scheme "snow" in inputs.conf at script (re)start.

0 Karma

r_rolls
Loves-to-Learn

Hi

Did you happen to fix this, if yes can you please post the solution.

0 Karma
Get Updates on the Splunk Community!

Index This | I am a number, but when you add ‘G’ to me, I go away. What number am I?

March 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...

What’s New in Splunk App for PCI Compliance 5.3.1?

The Splunk App for PCI Compliance allows customers to extend the power of their existing Splunk solution with ...

Extending Observability Content to Splunk Cloud

Register to join us !   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to ...