<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Certificate Transparency Errors in All Apps and Add-ons</title>
    <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Certificate-Transparency-Errors/m-p/425041#M51938</link>
    <description>&lt;P&gt;Can you try if version 1.3.0 (on Github only) fixes this for you?&lt;BR /&gt;
If so, I'll publish it on Splunkbase&lt;/P&gt;</description>
    <pubDate>Sun, 28 Apr 2019 14:44:42 GMT</pubDate>
    <dc:creator>jorritf</dc:creator>
    <dc:date>2019-04-28T14:44:42Z</dc:date>
    <item>
      <title>Certificate Transparency Errors</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Certificate-Transparency-Errors/m-p/425040#M51937</link>
      <description>&lt;P&gt;Hello All,&lt;/P&gt;

&lt;P&gt;I have completed two separate installs of this app on different servers and then upgraded from Splunk 6 to 7. Both times I am getting the expected CT logs but I am also seeing a lot of internal errors. I see the exact same errors on both servers:&lt;/P&gt;

&lt;P&gt;Are other people also seeing this, is this keeping me from collecting all the data I should be seeing? Thanks,&lt;/P&gt;

&lt;P&gt;message from "python ../TA-ct-log/bin/ct_log.py"     input_module.collect_events(self, ew)&lt;BR /&gt;
message from "python ../TA-ct-log/bin/ct_log.py"     obj, end = self.raw_decode(s, idx=&lt;EM&gt;w(s, 0).end())&lt;BR /&gt;
message from "python ../TA-ct-log/bin/ct_log.py"     obj.process_log()&lt;BR /&gt;
message from "python ../TA-ct-log/bin/ct_log.py"     raise ValueError("No JSON object could be decoded")&lt;BR /&gt;
message from "python ../TA-ct-log/bin/ct_log.py"     return _default_decoder.decode(s)&lt;BR /&gt;
message from "python ../TA-ct-log/bin/ct_log.py"     self.collect_events(ew)&lt;BR /&gt;
message from "python ../TA-ct-log/bin/ct_log.py"     sth = json.loads(r.text)&lt;BR /&gt;
message from "python ../TA-ct-log/bin/ct_log.py"     tree_size = self.get_tree_size()&lt;BR /&gt;
message from "python ../TA-ct-log/bin/ct_log.py"   File "/opt/splunk/etc/apps/TA-ct-log/bin/ct_log.py", line 64, in collect_events&lt;BR /&gt;
message from "python ../TA-ct-log/bin/ct_log.py"   File "/opt/splunk/etc/apps/TA-ct-log/bin/ctl/ctl2splunk.py", line 169, in get_tree_size&lt;BR /&gt;
message from "python ../TA-ct-log/bin/ct_log.py"   File "/opt/splunk/etc/apps/TA-ct-log/bin/ctl/ctl2splunk.py", line 201, in process_log&lt;BR /&gt;
message from "python ../TA-ct-log/bin/ct_log.py"   File "/opt/splunk/etc/apps/TA-ct-log/bin/input_module_ct_log.py", line 26, in collect_events&lt;BR /&gt;
message from "python ../TA-ct-log/bin/ct_log.py"   File "/opt/splunk/etc/apps/TA-ct-log/bin/ta_ct_log/modinput_wrapper/base_modinput.py", line 127, in stream_events&lt;BR /&gt;
message from "python ../TA-ct-log/bin/ct_log.py"   File "/opt/splunk/lib/python2.7/json/&lt;/EM&gt;&lt;EM&gt;init&lt;/EM&gt;_.py", line 339, in loads&lt;BR /&gt;
message from "python ../TA-ct-log/bin/ct_log.py"   File "/opt/splunk/lib/python2.7/json/decoder.py", line 364, in decode&lt;BR /&gt;
message from "python ../TA-ct-log/bin/ct_log.py"   File "/opt/splunk/lib/python2.7/json/decoder.py", line 382, in raw_decode&lt;BR /&gt;
message from "python ../TA-ct-log/bin/ct_log.py" ERRORNo JSON object could be decoded&lt;BR /&gt;
message from "python ../TA-ct-log/bin/ct_log.py" Traceback (most recent call last):&lt;BR /&gt;
message from "python ../TA-ct-log/bin/ct_log.py" ValueError: No JSON object could be decoded&lt;/P&gt;

&lt;P&gt;I am just showing the message field to fit on the screen. All evens are coming in as component=ExecProcessor and log_level=ERROR&lt;/P&gt;</description>
      <pubDate>Wed, 30 Sep 2020 00:14:12 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Certificate-Transparency-Errors/m-p/425040#M51937</guid>
      <dc:creator>liquidclay23</dc:creator>
      <dc:date>2020-09-30T00:14:12Z</dc:date>
    </item>
    <item>
      <title>Re: Certificate Transparency Errors</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Certificate-Transparency-Errors/m-p/425041#M51938</link>
      <description>&lt;P&gt;Can you try if version 1.3.0 (on Github only) fixes this for you?&lt;BR /&gt;
If so, I'll publish it on Splunkbase&lt;/P&gt;</description>
      <pubDate>Sun, 28 Apr 2019 14:44:42 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Certificate-Transparency-Errors/m-p/425041#M51938</guid>
      <dc:creator>jorritf</dc:creator>
      <dc:date>2019-04-28T14:44:42Z</dc:date>
    </item>
    <item>
      <title>Re: Certificate Transparency Errors</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Certificate-Transparency-Errors/m-p/425042#M51939</link>
      <description>&lt;P&gt;Thank you for your response jorritf. I uploaded the version of the app in GIT and immediately saw a significant improvement. Prior I was seeing about 684 errors a day. I am only seeing 18 errors since I upgraded yesterday.&lt;/P&gt;

&lt;P&gt;component   log_level   event_message   count&lt;BR /&gt;
ExecProcessor   ERROR   message from "python /opt/splunk/etc/apps/TA-ct-log/bin/ct_log.py" Traceback (most recent call last):   2&lt;BR /&gt;
ExecProcessor   ERROR   message from "python /opt/splunk/etc/apps/TA-ct-log/bin/ct_log.py"     input_module.collect_events(self, ew)    1&lt;BR /&gt;
ExecProcessor   ERROR   message from "python /opt/splunk/etc/apps/TA-ct-log/bin/ct_log.py"     obj.process_log()    1&lt;BR /&gt;
ExecProcessor   ERROR   message from "python /opt/splunk/etc/apps/TA-ct-log/bin/ct_log.py"     os.rename(sfn, dfn)  1&lt;BR /&gt;
ExecProcessor   ERROR   message from "python /opt/splunk/etc/apps/TA-ct-log/bin/ct_log.py"     raise Exception("Error saving checkpoint data with with exception %s" % str(e))  1&lt;BR /&gt;
ExecProcessor   ERROR   message from "python /opt/splunk/etc/apps/TA-ct-log/bin/ct_log.py"     self.collect_events(ew)  1&lt;BR /&gt;
ExecProcessor   ERROR   message from "python /opt/splunk/etc/apps/TA-ct-log/bin/ct_log.py"     self.doRollover()    1&lt;BR /&gt;
ExecProcessor   ERROR   message from "python /opt/splunk/etc/apps/TA-ct-log/bin/ct_log.py"   File "/opt/splunk/etc/apps/TA-ct-log/bin/ct_log.py", line 64, in collect_events    1&lt;BR /&gt;
ExecProcessor   ERROR   message from "python /opt/splunk/etc/apps/TA-ct-log/bin/ct_log.py"   File "/opt/splunk/etc/apps/TA-ct-log/bin/ctl/ctl2splunk.py", line 254, in process_log  1&lt;BR /&gt;
ExecProcessor   ERROR   message from "python /opt/splunk/etc/apps/TA-ct-log/bin/ct_log.py"   File "/opt/splunk/etc/apps/TA-ct-log/bin/input_module_ct_log.py", line 23, in collect_events   1&lt;BR /&gt;
ExecProcessor   ERROR   message from "python /opt/splunk/etc/apps/TA-ct-log/bin/ct_log.py"   File "/opt/splunk/etc/apps/TA-ct-log/bin/ta_ct_log/modinput_wrapper/base_modinput.py", line 127, in stream_events  1&lt;BR /&gt;
ExecProcessor   ERROR   message from "python /opt/splunk/etc/apps/TA-ct-log/bin/ct_log.py"   File "/opt/splunk/lib/python2.7/logging/handlers.py", line 136, in doRollover  1&lt;BR /&gt;
ExecProcessor   ERROR   message from "python /opt/splunk/etc/apps/TA-ct-log/bin/ct_log.py"   File "/opt/splunk/lib/python2.7/logging/handlers.py", line 77, in emit 1&lt;BR /&gt;
ExecProcessor   ERROR   message from "python /opt/splunk/etc/apps/TA-ct-log/bin/ct_log.py" ERRORError saving checkpoint data with with exception ('Connection aborted.', BadStatusLine("''",))  1&lt;BR /&gt;
ExecProcessor   ERROR   message from "python /opt/splunk/etc/apps/TA-ct-log/bin/ct_log.py" Exception: Error saving checkpoint data with with exception ('Connection aborted.', BadStatusLine("''",))    1&lt;BR /&gt;
ExecProcessor   ERROR   message from "python /opt/splunk/etc/apps/TA-ct-log/bin/ct_log.py" Logged from file base_modinput.py, line 293  1&lt;BR /&gt;
ExecProcessor   ERROR   message from "python /opt/splunk/etc/apps/TA-ct-log/bin/ct_log.py" OSError: [Errno 2] No such file or directory &lt;/P&gt;</description>
      <pubDate>Wed, 30 Sep 2020 00:18:28 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Certificate-Transparency-Errors/m-p/425042#M51939</guid>
      <dc:creator>liquidclay23</dc:creator>
      <dc:date>2020-09-30T00:18:28Z</dc:date>
    </item>
  </channel>
</rss>

