<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Microsoft Log Analytics issue:  OAuth2Client:Get Token request failed in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/Microsoft-Log-Analytics-issue-OAuth2Client-Get-Token-request/m-p/508272#M86491</link>
    <description>&lt;P&gt;Did you properly configure your AAD?&lt;/P&gt;&lt;P&gt;&lt;A href="https://dev.loganalytics.io/documentation/Authorization/AAD-Setup" target="_blank"&gt;https://dev.loganalytics.io/documentation/Authorization/AAD-Setup&lt;/A&gt;&lt;/P&gt;</description>
    <pubDate>Thu, 09 Jul 2020 11:10:20 GMT</pubDate>
    <dc:creator>jkat54</dc:creator>
    <dc:date>2020-07-09T11:10:20Z</dc:date>
    <item>
      <title>Microsoft Log Analytics issue:  OAuth2Client:Get Token request failed</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Microsoft-Log-Analytics-issue-OAuth2Client-Get-Token-request/m-p/505144#M86081</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;I'm trying to pull data from Azure Log Analytics workspace to Splunk. I have installed the add-on Microsoft Log Analytics Add-on (&lt;A href="https://splunkbase.splunk.com/app/4127/" target="_blank" rel="noopener"&gt;https://splunkbase.splunk.com/app/4127/&lt;/A&gt;) .&lt;/P&gt;&lt;P&gt;When I checked the log, this is what I see&lt;BR /&gt;&lt;BR /&gt;2020-06-19 11:23:36,446 INFO pid=85670 tid=MainThread file=connectionpool.py:_new_conn:758 | Starting new HTTPS connection (1): 127.0.0.1&lt;BR /&gt;2020-06-19 11:23:37,263 INFO pid=85670 tid=MainThread file=connectionpool.py:_new_conn:758 | Starting new HTTPS connection (1): 127.0.0.1&lt;BR /&gt;2020-06-19 11:23:38,694 INFO pid=85670 tid=MainThread file=splunk_rest_client.py:_request_handler:100 | Use HTTP connection pooling&lt;BR /&gt;2020-06-19 11:23:38,694 DEBUG pid=85670 tid=MainThread file=binding.py:get:664 | GET request to &lt;A href="https://127.0.0.1:8089/servicesNS/nobody/TA-ms-loganalytics/s" target="_blank" rel="noopener"&gt;https://127.0.0.1:8089/servicesNS/nobody/TA-ms-loganalytics/s&lt;/A&gt;&lt;BR /&gt;torage/collections/config/TA_ms_loganalytics_checkpointer (body: {})&lt;BR /&gt;2020-06-19 11:23:38,695 INFO pid=85670 tid=MainThread file=connectionpool.py:_new_conn:758 | Starting new HTTPS connection (1): 127.0.0.1&lt;BR /&gt;2020-06-19 11:23:38,699 DEBUG pid=85670 tid=MainThread file=connectionpool.py:_make_request:387 | "GET /servicesNS/nobody/TA-ms-loganalytics/storage/collecti&lt;BR /&gt;ons/config/TA_ms_loganalytics_checkpointer HTTP/1.1" 200 5632&lt;BR /&gt;2020-06-19 11:23:38,699 DEBUG pid=85670 tid=MainThread file=binding.py:new_f:71 | Operation took 0:00:00.005300&lt;BR /&gt;2020-06-19 11:23:38,700 DEBUG pid=85670 tid=MainThread file=binding.py:get:664 | GET request to &lt;A href="https://127.0.0.1:8089/servicesNS/nobody/TA-ms-loganalytics/s" target="_blank" rel="noopener"&gt;https://127.0.0.1:8089/servicesNS/nobody/TA-ms-loganalytics/s&lt;/A&gt;&lt;BR /&gt;torage/collections/config/ (body: {'offset': 0, 'count': -1, 'search': 'TA_ms_loganalytics_checkpointer'})&lt;BR /&gt;2020-06-19 11:23:38,702 DEBUG pid=85670 tid=MainThread file=connectionpool.py:_make_request:387 | "GET /servicesNS/nobody/TA-ms-loganalytics/storage/collecti&lt;BR /&gt;ons/config/?offset=0&amp;amp;count=-1&amp;amp;search=TA_ms_loganalytics_checkpointer HTTP/1.1" 200 4830&lt;BR /&gt;2020-06-19 11:23:38,702 DEBUG pid=85670 tid=MainThread file=binding.py:new_f:71 | Operation took 0:00:00.002460&lt;BR /&gt;2020-06-19 11:23:38,704 DEBUG pid=85670 tid=MainThread file=binding.py:get:664 | GET request to &lt;A href="https://127.0.0.1:8089/servicesNS/nobody/TA-ms-loganalytics/s" target="_blank" rel="noopener"&gt;https://127.0.0.1:8089/servicesNS/nobody/TA-ms-loganalytics/s&lt;/A&gt;&lt;BR /&gt;torage/collections/data/TA_ms_loganalytics_checkpointer/AzureLogAnalytic (body: {})&lt;BR /&gt;2020-06-19 11:23:38,706 DEBUG pid=85670 tid=MainThread file=connectionpool.py:_make_request:387 | "GET /servicesNS/nobody/TA-ms-loganalytics/storage/collecti&lt;BR /&gt;ons/data/TA_ms_loganalytics_checkpointer/AzureLogAnalytic HTTP/1.1" 404 140&lt;BR /&gt;2020-06-19 11:23:38,708 DEBUG pid=85670 tid=MainThread file=log.py:debug:108 | 16e5bba7-a023-431f-9813-396e814eabc9 - Authority:Performing instance discovery&lt;BR /&gt;: &lt;A href="https://login.microsoftonline.com/0ae51e19-07c8-4e4b-bb6d-648ee58410f4" target="_blank" rel="noopener"&gt;https://login.microsoftonline.com/0ae51e19-07c8-4e4b-bb6d-648ee58410f4&lt;/A&gt;&lt;BR /&gt;2020-06-19 11:23:38,708 DEBUG pid=85670 tid=MainThread file=log.py:debug:108 | 16e5bba7-a023-431f-9813-396e814eabc9 - Authority:Performing static instance di&lt;BR /&gt;scovery&lt;BR /&gt;2020-06-19 11:23:38,708 DEBUG pid=85670 tid=MainThread file=log.py:debug:108 | 16e5bba7-a023-431f-9813-396e814eabc9 - Authority:Authority validated via stati&lt;BR /&gt;c instance discovery&lt;BR /&gt;2020-06-19 11:23:38,709 INFO pid=85670 tid=MainThread file=log.py:info:103 | 16e5bba7-a023-431f-9813-396e814eabc9 - TokenRequest:Getting token with client cr&lt;BR /&gt;edentials.&lt;BR /&gt;2020-06-19 11:23:38,709 DEBUG pid=85670 tid=MainThread file=log.py:debug:108 | 16e5bba7-a023-431f-9813-396e814eabc9 - TokenRequest:No user_id passed for cach&lt;BR /&gt;e query&lt;BR /&gt;2020-06-19 11:23:38,709 DEBUG pid=85670 tid=MainThread file=log.py:debug:108 | 16e5bba7-a023-431f-9813-396e814eabc9 - OAuth2Client:finding with query: {"_clientId": "dce1fe27-225d-4615-bcee-d22ff8071a0f"}&lt;BR /&gt;2020-06-19 11:23:38,709 DEBUG pid=85670 tid=MainThread file=log.py:debug:108 | 16e5bba7-a023-431f-9813-396e814eabc9 - OAuth2Client:Looking for potential cache entries:&lt;BR /&gt;2020-06-19 11:23:38,709 DEBUG pid=85670 tid=MainThread file=log.py:debug:108 | 16e5bba7-a023-431f-9813-396e814eabc9 - OAuth2Client:{"_clientId": "dce1fe27-225d-4615-bcee-d22ff8071a0f"}&lt;BR /&gt;2020-06-19 11:23:38,709 DEBUG pid=85670 tid=MainThread file=log.py:debug:108 | 16e5bba7-a023-431f-9813-396e814eabc9 - OAuth2Client:Found 0 potential entries.&lt;BR /&gt;2020-06-19 11:23:38,713 DEBUG pid=85670 tid=MainThread file=connectionpool.py:_new_conn:809 | Starting new HTTPS connection (1): login.microsoftonline.com&lt;BR /&gt;2020-06-19 11:23:38,716 INFO pid=85670 tid=MainThread file=log.py:info:103 | 16e5bba7-a023-431f-9813-396e814eabc9 - OAuth2Client:Get Token request failed&lt;BR /&gt;2020-06-19 11:23:38,718 ERROR pid=85670 tid=MainThread file=base_modinput.py:log_error:307 | Get error when collecting events.&lt;BR /&gt;Traceback (most recent call last):&lt;BR /&gt;File "/opt/splunk/etc/apps/TA-ms-loganalytics/bin/ta_ms_loganalytics/modinput_wrapper/base_modinput.py", line 127, in stream_events&lt;BR /&gt;self.collect_events(ew)&lt;BR /&gt;File "/opt/splunk/etc/apps/TA-ms-loganalytics/bin/log_analytics.py", line 96, in collect_events&lt;BR /&gt;input_module.collect_events(self, ew)&lt;BR /&gt;File "/opt/splunk/etc/apps/TA-ms-loganalytics/bin/input_module_log_analytics.py", line 49, in collect_events&lt;BR /&gt;token_response = context.acquire_token_with_client_credentials('&lt;A href="https://api.loganalytics.us/" target="_blank" rel="noopener"&gt;https://api.loganalytics.us/&lt;/A&gt;', application_id, application_key)&lt;BR /&gt;File "/opt/splunk/etc/apps/TA-ms-loganalytics/bin/adal/authentication_context.py", line 160, in acquire_token_with_client_credentials&lt;BR /&gt;return self._acquire_token(token_func)&lt;BR /&gt;File "/opt/splunk/etc/apps/TA-ms-loganalytics/bin/adal/authentication_context.py", line 109, in _acquire_token&lt;BR /&gt;return token_func(self)&lt;BR /&gt;File "/opt/splunk/etc/apps/TA-ms-loganalytics/bin/adal/authentication_context.py", line 158, in token_func&lt;BR /&gt;return token_request.get_token_with_client_credentials(client_secret)&lt;BR /&gt;File "/opt/splunk/etc/apps/TA-ms-loganalytics/bin/adal/token_request.py", line 316, in get_token_with_client_credentials&lt;BR /&gt;token = self._oauth_get_token(oauth_parameters)&lt;BR /&gt;File "/opt/splunk/etc/apps/TA-ms-loganalytics/bin/adal/token_request.py", line 113, in _oauth_get_token&lt;BR /&gt;return client.get_token(oauth_parameters)&lt;BR /&gt;File "/opt/splunk/etc/apps/TA-ms-loganalytics/bin/adal/oauth2_client.py", line 262, in get_token&lt;BR /&gt;verify=self._call_context.get('verify_ssl', None))&lt;BR /&gt;File "/opt/splunk/etc/apps/TA-ms-loganalytics/bin/ta_ms_loganalytics/requests/api.py", line 110, in post&lt;BR /&gt;return request('post', url, data=data, json=json, **kwargs)&lt;BR /&gt;File "/opt/splunk/etc/apps/TA-ms-loganalytics/bin/ta_ms_loganalytics/requests/api.py", line 56, in request&lt;BR /&gt;return session.request(method=method, url=url, **kwargs)&lt;BR /&gt;File "/opt/splunk/etc/apps/TA-ms-loganalytics/bin/ta_ms_loganalytics/requests/sessions.py", line 488, in request&lt;BR /&gt;resp = self.send(prep, **send_kwargs)&lt;BR /&gt;File "/opt/splunk/etc/apps/TA-ms-loganalytics/bin/ta_ms_loganalytics/requests/sessions.py", line 609, in send&lt;BR /&gt;r = adapter.send(request, **kwargs)&lt;BR /&gt;File "/opt/splunk/etc/apps/TA-ms-loganalytics/bin/ta_ms_loganalytics/requests/adapters.py", line 487, in send&lt;BR /&gt;raise ConnectionError(e, request=request)&lt;BR /&gt;ConnectionError: HTTPSConnectionPool(host='login.microsoftonline.com', port=443): Max retries exceeded with url: /0ae51e19-07c8-4e4b-bb6d-648ee58410f4/oauth2/token?api-version=1.0 (Caused by NewConnectionError('&amp;lt;requests.packages.urllib3.connection.VerifiedHTTPSConnection object at 0x7f6e3a7aaa10&amp;gt;: Failed to establish a new connection: [Errno -2] Name or service not known',))&lt;/P&gt;&lt;P&gt;Anyone has any idea how to solve this issue? Thanks&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 19 Jun 2020 09:33:36 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Microsoft-Log-Analytics-issue-OAuth2Client-Get-Token-request/m-p/505144#M86081</guid>
      <dc:creator>Cbr1sg</dc:creator>
      <dc:date>2020-06-19T09:33:36Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft Log Analytics issue:  OAuth2Client:Get Token request failed</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Microsoft-Log-Analytics-issue-OAuth2Client-Get-Token-request/m-p/508226#M86487</link>
      <description>&lt;P&gt;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/199197"&gt;@jkat54&lt;/a&gt;Do you know how to solve it? Thanks&lt;/P&gt;</description>
      <pubDate>Thu, 09 Jul 2020 03:09:12 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Microsoft-Log-Analytics-issue-OAuth2Client-Get-Token-request/m-p/508226#M86487</guid>
      <dc:creator>Cbr1sg</dc:creator>
      <dc:date>2020-07-09T03:09:12Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft Log Analytics issue:  OAuth2Client:Get Token request failed</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Microsoft-Log-Analytics-issue-OAuth2Client-Get-Token-request/m-p/508272#M86491</link>
      <description>&lt;P&gt;Did you properly configure your AAD?&lt;/P&gt;&lt;P&gt;&lt;A href="https://dev.loganalytics.io/documentation/Authorization/AAD-Setup" target="_blank"&gt;https://dev.loganalytics.io/documentation/Authorization/AAD-Setup&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 09 Jul 2020 11:10:20 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Microsoft-Log-Analytics-issue-OAuth2Client-Get-Token-request/m-p/508272#M86491</guid>
      <dc:creator>jkat54</dc:creator>
      <dc:date>2020-07-09T11:10:20Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft Log Analytics issue:  OAuth2Client:Get Token request failed</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Microsoft-Log-Analytics-issue-OAuth2Client-Get-Token-request/m-p/508713#M86536</link>
      <description>&lt;P&gt;Yes, my app has the redirect URL configured and also permission to&amp;nbsp;Read Log Analytics data as user and access to azure log analytic workspace as reader.&lt;/P&gt;&lt;P&gt;The only possible issue I can think of is my re-direct URL: my local splunk server is configured as &lt;A href="https://&amp;lt;fqdn" target="_blank" rel="noopener"&gt;https://&amp;lt;fqdn&amp;gt;:8000&lt;/A&gt;&lt;/P&gt;&lt;P&gt;so I use that as the re-direct URL from the AAD app setup, is it correct?&lt;/P&gt;</description>
      <pubDate>Mon, 13 Jul 2020 02:48:53 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Microsoft-Log-Analytics-issue-OAuth2Client-Get-Token-request/m-p/508713#M86536</guid>
      <dc:creator>Cbr1sg</dc:creator>
      <dc:date>2020-07-13T02:48:53Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft Log Analytics issue:  OAuth2Client:Get Token request failed</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Microsoft-Log-Analytics-issue-OAuth2Client-Get-Token-request/m-p/559372#M92522</link>
      <description>&lt;P&gt;Hi Team,&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I'm also trying to pull data from Azure Log Analytics workspace to Splunk but this add on is not working for me since after downloading it is showing &lt;STRONG&gt;loading.. (looks like no longer support)&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;Can any one please suggest any better way to do this integration.&lt;/P&gt;</description>
      <pubDate>Wed, 14 Jul 2021 08:56:43 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Microsoft-Log-Analytics-issue-OAuth2Client-Get-Token-request/m-p/559372#M92522</guid>
      <dc:creator>02sangeet</dc:creator>
      <dc:date>2021-07-14T08:56:43Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft Log Analytics issue:  OAuth2Client:Get Token request failed</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Microsoft-Log-Analytics-issue-OAuth2Client-Get-Token-request/m-p/559566#M92543</link>
      <description>&lt;P&gt;At least to me, the problem is solved after I changed the redirect URI to redirectUri="&lt;A href="https://localhost" target="_blank"&gt;https://localhost&lt;/A&gt;"&lt;/P&gt;</description>
      <pubDate>Thu, 15 Jul 2021 09:49:51 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Microsoft-Log-Analytics-issue-OAuth2Client-Get-Token-request/m-p/559566#M92543</guid>
      <dc:creator>Cbr1sg</dc:creator>
      <dc:date>2021-07-15T09:49:51Z</dc:date>
    </item>
  </channel>
</rss>

