Deployment Architecture

piping stack trace to a splunk port

vdamiangf
Engager

I am trying to start a service with the stack trace option on and pipe that output into a splunk port. It does not seem to be capturing any data.
I place this command on the etc/init.d start script

su - $user -c "/usr/bin/strace -f -ttt -e trace=all $LOCAL_PATH/myprocess.pl start | /usr/bin/nc my.splunk.com 9050"

Tags (1)
0 Karma

tmann_splunk
Splunk Employee
Splunk Employee

Check that your ports are open and that splunk is listening for traffic on 9050. You can see an example described here for Splunk Storm (and Splunk Enterprise) http://docs.splunk.com/Documentation/Storm/Storm/User/Howtoforwarddatavianetcat

0 Karma
Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...