Events are added to the main index and I can see them accumulating normally.
When I tried to see my user's role definition, I couldn't because this is the free version and user roles are not allowed.
Checking index=_internal log_level=ERROR, I found some errors:
2016-08-31 15:39:05,871 ERROR [57c6ddf9ba19e01f4ee80] admin:1775 - [HTTP 402] Current license does not allow the requested action
Traceback (most recent call last):
File "C:\Program Files\Splunk\Python-2.7\Lib\site-packages\splunk\appserver\mrsparkle\controllers\admin.py", line 1745, in listEntities
entities = en.getEntities(endpoint_path, **args)
File "C:\Program Files\Splunk\Python-2.7\Lib\site-packages\splunk\entity.py", line 129, in getEntities
atomFeed = _getEntitiesAtomFeed(entityPath, namespace, owner, search, count, offset, sort_key, sort_dir, sessionKey, uri, hostPath, **kwargs)
File "C:\Program Files\Splunk\Python-2.7\Lib\site-packages\splunk\entity.py", line 222, in _getEntitiesAtomFeed
serverResponse, serverContent = rest.simpleRequest(uri, getargs=kwargs, sessionKey=sessionKey, raiseAllErrors=True)
File "C:\Program Files\Splunk\Python-2.7\Lib\site-packages\splunk\rest\__init__.py", line 513, in simpleRequest
raise splunk.LicenseRestriction
LicenseRestriction: [HTTP 402] Current license does not allow the requested action
================================================================================================================
2016-08-30 15:50:00,313 ERROR [57c58f084c19e01492278] config:132 - [HTTP 401] Client is not authenticated
Traceback (most recent call last):
File "C:\Program Files\Splunk\Python-2.7\Lib\site-packages\splunk\appserver\mrsparkle\lib\config.py", line 130, in getServerZoneInfo
return times.getServerZoneinfo()
File "C:\Program Files\Splunk\Python-2.7\Lib\site-packages\splunk\appserver\mrsparkle\lib\times.py", line 158, in getServerZoneinfo
serverStatus, serverResp = splunk.rest.simpleRequest('/search/timeparser/tz')
File "C:\Program Files\Splunk\Python-2.7\Lib\site-packages\splunk\rest\__init__.py", line 510, in simpleRequest
raise splunk.AuthenticationFailed
AuthenticationFailed: [HTTP 401] Client is not authenticated
host = 677878-db1 source = C:\Program Files\Splunk\var\log\splunk\web_service.log sourcetype = splunk_web_service
================================================================================================================
2016-08-30 15:38:12,792 ERROR [57c58c44c9bbef1fc7f0] utility:49 - name=javascript, class=Splunk.Error, lineNumber=586, message=Uncaught TypeError: e.defaultDrilldown is not a function, fileName=http://192.168.100.12:8000/en-US/static/@debde650d26e/js/licenseusage.js
================================================================================================================
Thank you
... View more