splunkd logs:
04-17-2018 16:19:12.876 +0000 ERROR UserManagerPro - Failed to get LDAP user="nobody" from any configured servers
04-17-2018 16:24:48.235 +0000 ERROR AdminManagerExternal - Stack trace from python handler:\nTraceback (most recent call last):\n File "/opt/splunk/lib/python2.7/site-packages/splunk/admin.py", line 129, in init\n hand.execute(info)\n File "/opt/splunk/lib/python2.7/site-packages/splunk/admin.py", line 591, in execute\n if self.requestedAction == ACTION_EDIT: self.handleEdit(confInfo)\n File "/opt/splunk/etc/apps/rapid7/bin/nexpose_setup.py", line 146, in handleEdit\n entity.deleteEntity('/storage/passwords/', c.name, namespace=APPNAME, owner='nobody', sessionKey=sessionKey)\n File "/opt/splunk/lib/python2.7/site-packages/splunk/entity.py", line 442, in deleteEntity\n serverResponse, serverContent = rest.simpleRequest(uri, sessionKey=sessionKey, method='DELETE', raiseAllErrors=True)\n File "/opt/splunk/lib/python2.7/site-packages/splunk/rest/init.py", line 583, in simpleRequest\n raise splunk.InternalServerError, (None, serverResponse.messages)\nInternalServerError: [HTTP 500] Splunkd internal error; [{'code': None, 'type': 'ERROR', 'text': "\n In handler 'passwords': Does not exist: /nobody/rapid7/passwords/credential::splunk:"}]\n
04-17-2018 16:24:48.235 +0000 ERROR AdminManagerExternal - Unexpected error "" from python handler: "[HTTP 500] Splunkd internal error; [{'code': None, 'type': 'ERROR', 'text': "\n In handler 'passwords': Does not exist: /nobody/rapid7/passwords/credential::splunk:"}]". See splunkd.log for more details.
My thoughts are that "owner='nobody'" probably needs to be something like owner='admin' but having a hard time tracking down where the config issue lies.
... View more