<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Eventtypes have gone missing in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/Eventtypes-have-gone-missing/m-p/445991#M99389</link>
    <description>&lt;P&gt;OK, I have answered this myself. The permissions for the Event Types for Splunk_TA_stream were restricted to 'The App' which is Splunk_TA_Stream, bit of course the Stream App is splunk_stream_app ... So the fix is to enable the Permissions for All apps so that splunk_stream_app can access the Event Types.&lt;/P&gt;</description>
    <pubDate>Wed, 30 Sep 2020 01:43:31 GMT</pubDate>
    <dc:creator>kmower</dc:creator>
    <dc:date>2020-09-30T01:43:31Z</dc:date>
    <item>
      <title>Eventtypes have gone missing</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Eventtypes-have-gone-missing/m-p/445990#M99388</link>
      <description>&lt;P&gt;I have had Splunk Stream up and running for a while, but after upgrading to 7.3.1 some of my Eventtypes that drive the Stream dashboards seem to have gone AWOL. For example, I am mainly using Stream to monitor my sql database activity (tds). The Admin dashboard for databases used to work just fine, but now it is throwing the error: Eventtype 'stream_agg_databases' does not exist or is disabled. &lt;/P&gt;

&lt;P&gt;I checked the Eventtypes after reading a post that said sometimes Eventtypes are disabled on upgrades, but this one is gone altogether. So I was wondering if anyone knows how to restore the Eventtypes for Stream? Thanks.&lt;/P&gt;</description>
      <pubDate>Wed, 30 Sep 2020 01:43:28 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Eventtypes-have-gone-missing/m-p/445990#M99388</guid>
      <dc:creator>kmower</dc:creator>
      <dc:date>2020-09-30T01:43:28Z</dc:date>
    </item>
    <item>
      <title>Re: Eventtypes have gone missing</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Eventtypes-have-gone-missing/m-p/445991#M99389</link>
      <description>&lt;P&gt;OK, I have answered this myself. The permissions for the Event Types for Splunk_TA_stream were restricted to 'The App' which is Splunk_TA_Stream, bit of course the Stream App is splunk_stream_app ... So the fix is to enable the Permissions for All apps so that splunk_stream_app can access the Event Types.&lt;/P&gt;</description>
      <pubDate>Wed, 30 Sep 2020 01:43:31 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Eventtypes-have-gone-missing/m-p/445991#M99389</guid>
      <dc:creator>kmower</dc:creator>
      <dc:date>2020-09-30T01:43:31Z</dc:date>
    </item>
  </channel>
</rss>

