<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Splunk DB Connect: Why Web Access data is being logged into jbridge.log? in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-DB-Connect-Why-Web-Access-data-is-being-logged-into/m-p/191554#M98574</link>
    <description>&lt;P&gt;Hi Musskopf,&lt;/P&gt;

&lt;P&gt;These 2 issues have been fixed in DB connect 1.1.5.&lt;BR /&gt;
Please upgrade to get them fixed.&lt;/P&gt;

&lt;P&gt;By default in 1.1.5, jbridge.log will be rotated if larger then 100MB and max 5 history files.&lt;BR /&gt;
To change the settings, you still need to create jbridge_server.conf in $SPLUNK_HOME/etc/apps/dbx/local&lt;BR /&gt;
Please refer to&lt;BR /&gt;
&lt;A href="http://docs.splunk.com/Documentation/DBX/1.1.5/DeployDBX/Troubleshoot#Java_bridge_log_file_settings" target="_blank"&gt;http://docs.splunk.com/Documentation/DBX/1.1.5/DeployDBX/Troubleshoot#Java_bridge_log_file_settings&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;Hope this helps.&lt;/P&gt;</description>
    <pubDate>Mon, 28 Sep 2020 18:16:58 GMT</pubDate>
    <dc:creator>mchang_splunk</dc:creator>
    <dc:date>2020-09-28T18:16:58Z</dc:date>
    <item>
      <title>Splunk DB Connect: Why Web Access data is being logged into jbridge.log?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-DB-Connect-Why-Web-Access-data-is-being-logged-into/m-p/191550#M98570</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;

&lt;P&gt;I noticed today that Web Access data is being logged inside the DB Connect Logfile &lt;CODE&gt;$SPLUNK_HOME/var/log/splunk/jbridge.log&lt;/CODE&gt;. Apparently the Splunk Web server is logging the access to both files: &lt;CODE&gt;jbridge.log&lt;/CODE&gt; and &lt;CODE&gt;web_access.log&lt;/CODE&gt;. Is anybody experiencing the same?&lt;/P&gt;

&lt;P&gt;If I run &lt;CODE&gt;lsof jbridge.log&lt;/CODE&gt; I get:&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;COMMAND  PID   USER   FD   TYPE DEVICE SIZE/OFF   NODE NAME
splunkd 5307 splunk   92u   REG  253,2  7836435 138393 jbridge.log
python  5363 splunk    3w   REG  253,2  7836435 138393 jbridge.log
python  5363 splunk    4w   REG  253,2  7836435 138393 jbridge.log
java    5366 splunk    3w   REG  253,2  7836435 138393 jbridge.log
java    5366 splunk    4w   REG  253,2  7836435 138393 jbridge.log
python  5424 splunk    6w   REG  253,2  7836435 138393 jbridge.log
&lt;/CODE&gt;&lt;/PRE&gt;

&lt;P&gt;Where the PID 6363 is &lt;CODE&gt;python /apps/splunk/etc/apps/dbx/bin/jbridge_server.py&lt;/CODE&gt; and PID 5424 is &lt;CODE&gt;python -O /apps/splunk/lib/python2.7/site-packages/splunk/appserver/mrsparkle/root.py restart&lt;/CODE&gt;&lt;/P&gt;

&lt;P&gt;Looks like the Webserver is sending the messages to both handlers.&lt;/P&gt;

&lt;P&gt;&lt;STRONG&gt;Here my Software Versions:&lt;/STRONG&gt;&lt;BR /&gt;
RedHat EL 6.5&lt;BR /&gt;
Splunk 6.1.1&lt;BR /&gt;
Splunk DB Connect 1.1.4&lt;/P&gt;

&lt;P&gt;Any help is appreciated!&lt;/P&gt;

&lt;P&gt;Cheers,&lt;BR /&gt;
Mike M.&lt;/P&gt;</description>
      <pubDate>Mon, 03 Nov 2014 01:04:57 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-DB-Connect-Why-Web-Access-data-is-being-logged-into/m-p/191550#M98570</guid>
      <dc:creator>musskopf</dc:creator>
      <dc:date>2014-11-03T01:04:57Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk DB Connect: Why Web Access data is being logged into jbridge.log?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-DB-Connect-Why-Web-Access-data-is-being-logged-into/m-p/191551#M98571</link>
      <description>&lt;P&gt;forgot to mention, the logfile also doesn't rotate. Here my &lt;CODE&gt;jbridge_server.conf&lt;/CODE&gt;:&lt;BR /&gt;
&lt;PRE&gt;[log]&lt;BR /&gt;
filename=jbridge.log&lt;BR /&gt;
maxCount=3&lt;BR /&gt;
fileSize=15000000&lt;BR /&gt;
logLevel=info&lt;/PRE&gt;&lt;BR /&gt;
It should rotate at 15Mb but my logfile keeps growing up to 1Gb and I need to remove/rotate manually.&lt;/P&gt;</description>
      <pubDate>Tue, 04 Nov 2014 01:14:40 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-DB-Connect-Why-Web-Access-data-is-being-logged-into/m-p/191551#M98571</guid>
      <dc:creator>musskopf</dc:creator>
      <dc:date>2014-11-04T01:14:40Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk DB Connect: Why Web Access data is being logged into jbridge.log?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-DB-Connect-Why-Web-Access-data-is-being-logged-into/m-p/191552#M98572</link>
      <description>&lt;P&gt;I have a similar issue, it is currently running @ 1GB&lt;/P&gt;

&lt;P&gt;I cannot find any jbridge.conf&lt;/P&gt;</description>
      <pubDate>Mon, 10 Nov 2014 10:54:21 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-DB-Connect-Why-Web-Access-data-is-being-logged-into/m-p/191552#M98572</guid>
      <dc:creator>jdbtee</dc:creator>
      <dc:date>2014-11-10T10:54:21Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk DB Connect: Why Web Access data is being logged into jbridge.log?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-DB-Connect-Why-Web-Access-data-is-being-logged-into/m-p/191553#M98573</link>
      <description>&lt;P&gt;I don't think there is a &lt;CODE&gt;jbridge.conf&lt;/CODE&gt;... and the &lt;CODE&gt;jbridge_server.conf&lt;/CODE&gt; is not there by default, need to be created at &lt;STRONG&gt;$SPLUNK_HOME/etc/apps/dbx/local&lt;/STRONG&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 10 Nov 2014 21:05:02 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-DB-Connect-Why-Web-Access-data-is-being-logged-into/m-p/191553#M98573</guid>
      <dc:creator>musskopf</dc:creator>
      <dc:date>2014-11-10T21:05:02Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk DB Connect: Why Web Access data is being logged into jbridge.log?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-DB-Connect-Why-Web-Access-data-is-being-logged-into/m-p/191554#M98574</link>
      <description>&lt;P&gt;Hi Musskopf,&lt;/P&gt;

&lt;P&gt;These 2 issues have been fixed in DB connect 1.1.5.&lt;BR /&gt;
Please upgrade to get them fixed.&lt;/P&gt;

&lt;P&gt;By default in 1.1.5, jbridge.log will be rotated if larger then 100MB and max 5 history files.&lt;BR /&gt;
To change the settings, you still need to create jbridge_server.conf in $SPLUNK_HOME/etc/apps/dbx/local&lt;BR /&gt;
Please refer to&lt;BR /&gt;
&lt;A href="http://docs.splunk.com/Documentation/DBX/1.1.5/DeployDBX/Troubleshoot#Java_bridge_log_file_settings" target="_blank"&gt;http://docs.splunk.com/Documentation/DBX/1.1.5/DeployDBX/Troubleshoot#Java_bridge_log_file_settings&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;Hope this helps.&lt;/P&gt;</description>
      <pubDate>Mon, 28 Sep 2020 18:16:58 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-DB-Connect-Why-Web-Access-data-is-being-logged-into/m-p/191554#M98574</guid>
      <dc:creator>mchang_splunk</dc:creator>
      <dc:date>2020-09-28T18:16:58Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk DB Connect: Why Web Access data is being logged into jbridge.log?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-DB-Connect-Why-Web-Access-data-is-being-logged-into/m-p/191555#M98575</link>
      <description>&lt;P&gt;Where do you see it documented that the logging to both jbridge.log and web_access.log was fixed? I don't see anything about this in the DBX 1.1.5 Fixed Issues page.&lt;BR /&gt;
&lt;A href="http://docs.splunk.com/Documentation/DBX/1.1.5/ReleaseNotes/Releasenotes"&gt;http://docs.splunk.com/Documentation/DBX/1.1.5/ReleaseNotes/Releasenotes&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 05 Dec 2014 20:13:21 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-DB-Connect-Why-Web-Access-data-is-being-logged-into/m-p/191555#M98575</guid>
      <dc:creator>mthierbel</dc:creator>
      <dc:date>2014-12-05T20:13:21Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk DB Connect: Why Web Access data is being logged into jbridge.log?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-DB-Connect-Why-Web-Access-data-is-being-logged-into/m-p/191556#M98576</link>
      <description>&lt;P&gt;Im having the same issue .. web logs are being inserted into the jbridge.log (DB Connect 1.1.4). &lt;/P&gt;</description>
      <pubDate>Thu, 18 Dec 2014 02:18:52 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-DB-Connect-Why-Web-Access-data-is-being-logged-into/m-p/191556#M98576</guid>
      <dc:creator>shaun_dyble</dc:creator>
      <dc:date>2014-12-18T02:18:52Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk DB Connect: Why Web Access data is being logged into jbridge.log?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-DB-Connect-Why-Web-Access-data-is-being-logged-into/m-p/191557#M98577</link>
      <description>&lt;P&gt;Upgrading to DBX 1.1.5 fixed this issue for me.&lt;/P&gt;</description>
      <pubDate>Thu, 18 Dec 2014 02:20:41 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-DB-Connect-Why-Web-Access-data-is-being-logged-into/m-p/191557#M98577</guid>
      <dc:creator>jfarmiloe</dc:creator>
      <dc:date>2014-12-18T02:20:41Z</dc:date>
    </item>
  </channel>
</rss>

