<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Why deployment apps inputs.conf blacklisted event codes, regex are not reflecting on Splunk agent server ? in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/Why-deployment-apps-inputs-conf-blacklisted-event-codes-regex/m-p/620756#M106947</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/250934"&gt;@balu1211&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;could you better describe your issue?&lt;/P&gt;&lt;P&gt;is the problem that a configuration file isn't deployed to clients or what else?&lt;/P&gt;&lt;P&gt;Ciao.&lt;/P&gt;&lt;P&gt;Giuseppe&lt;/P&gt;</description>
    <pubDate>Mon, 14 Nov 2022 14:28:54 GMT</pubDate>
    <dc:creator>gcusello</dc:creator>
    <dc:date>2022-11-14T14:28:54Z</dc:date>
    <item>
      <title>Why deployment apps inputs.conf blacklisted event codes, regex are not reflecting on Splunk agent server ?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Why-deployment-apps-inputs-conf-blacklisted-event-codes-regex/m-p/620747#M106946</link>
      <description />
      <pubDate>Mon, 14 Nov 2022 13:55:13 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Why-deployment-apps-inputs-conf-blacklisted-event-codes-regex/m-p/620747#M106946</guid>
      <dc:creator>balu1211</dc:creator>
      <dc:date>2022-11-14T13:55:13Z</dc:date>
    </item>
    <item>
      <title>Re: Why deployment apps inputs.conf blacklisted event codes, regex are not reflecting on Splunk agent server ?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Why-deployment-apps-inputs-conf-blacklisted-event-codes-regex/m-p/620756#M106947</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/250934"&gt;@balu1211&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;could you better describe your issue?&lt;/P&gt;&lt;P&gt;is the problem that a configuration file isn't deployed to clients or what else?&lt;/P&gt;&lt;P&gt;Ciao.&lt;/P&gt;&lt;P&gt;Giuseppe&lt;/P&gt;</description>
      <pubDate>Mon, 14 Nov 2022 14:28:54 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Why-deployment-apps-inputs-conf-blacklisted-event-codes-regex/m-p/620756#M106947</guid>
      <dc:creator>gcusello</dc:creator>
      <dc:date>2022-11-14T14:28:54Z</dc:date>
    </item>
    <item>
      <title>Re: Why deployment apps inputs.conf blacklisted event codes, regex are not reflecting on Splunk agent server ?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Why-deployment-apps-inputs-conf-blacklisted-event-codes-regex/m-p/620896#M106963</link>
      <description>&lt;P&gt;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/161352"&gt;@gcusello&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Yes the configuration file not deployed to client.&lt;/P&gt;</description>
      <pubDate>Tue, 15 Nov 2022 13:34:39 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Why-deployment-apps-inputs-conf-blacklisted-event-codes-regex/m-p/620896#M106963</guid>
      <dc:creator>balu1211</dc:creator>
      <dc:date>2022-11-15T13:34:39Z</dc:date>
    </item>
    <item>
      <title>Re: Why deployment apps inputs.conf blacklisted event codes, regex are not reflecting on Splunk agent server ?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Why-deployment-apps-inputs-conf-blacklisted-event-codes-regex/m-p/620901#M106965</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/250934"&gt;@balu1211&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;there are many possible issues to check:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;are other apps deployed on your client?&lt;UL&gt;&lt;LI&gt;if yes don't see the following two questions;&lt;/LI&gt;&lt;/UL&gt;&lt;/LI&gt;&lt;LI&gt;is the client connected to the deployment Server?&lt;UL&gt;&lt;LI&gt;you can check this viewing in the client list in the DS;&lt;/LI&gt;&lt;/UL&gt;&lt;/LI&gt;&lt;LI&gt;is the 8089 port between client and DS open?&lt;UL&gt;&lt;LI&gt;you can check this on client using telent on this port;&lt;/LI&gt;&lt;/UL&gt;&lt;/LI&gt;&lt;LI&gt;has the user running Splunk on client able to write on the splunk folder?&lt;UL&gt;&lt;LI&gt;you should check the owner of app on the DS and the the folder and the user running splunk on client;&lt;/LI&gt;&lt;/UL&gt;&lt;/LI&gt;&lt;LI&gt;is the client in a serverclass using this app?&lt;UL&gt;&lt;LI&gt;you can cjeck this on DS by GUI i the client list.&lt;/LI&gt;&lt;/UL&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Ciao.&lt;/P&gt;&lt;P&gt;Giuseppe&lt;/P&gt;</description>
      <pubDate>Tue, 15 Nov 2022 13:49:48 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Why-deployment-apps-inputs-conf-blacklisted-event-codes-regex/m-p/620901#M106965</guid>
      <dc:creator>gcusello</dc:creator>
      <dc:date>2022-11-15T13:49:48Z</dc:date>
    </item>
  </channel>
</rss>

