Alerting

Puppet Tasks Alert Actions for Puppet error

vanacjo
New Member

As i was trying to get the application working, i'm always getting an error on cim_actions.py.

See below for a view on how everything is set:

Application config:
alt text

Alert config:
alt text

The error coming from /opt/splunk/var/log/splunk/puppet_enterprise_tasks_modalert.log:

2018-12-13 14:41:42,213 INFO pid=16947 tid=MainThread file=cim_actions.py:message:353 | sendmodaction - worker="joris-pcub" signature="Invoking modular action" action_name="puppet_enterprise_tasks" search_name="db stopped" sid="rt_scheduler__admin__search__RMD54202f6647ebbb67d_at_1544699239_353" rid="0.2" app="search" user="admin" action_mode="saved"
2018-12-13 14:41:43,163 INFO pid=16947 tid=MainThread file=setup_util.py:log_info:114 | Log level is not set, use default INFO
2018-12-13 14:41:43,163 INFO pid=16947 tid=MainThread file=setup_util.py:log_info:114 | Customized key can not be found
2018-12-13 14:41:43,311 ERROR pid=16947 tid=MainThread file=cim_actions.py:message:353 | sendmodaction - worker="joris-pcub" signature="Error: cannot concatenate 'str' and 'NoneType' objects. Please double check spelling and also verify that a compatible version of Splunk_SA_CIM is installed." action_name="puppet_enterprise_tasks" search_name="db stopped" sid="rt_scheduler__admin__search__RMD54202f6647ebbb67d_at_1544699239_353" rid="0.2" app="search" user="admin" action_mode="saved" action_status="failure"

@domeger

0 Karma
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk on November 6 at 11AM PT, and empower your SOC to reach new heights! Duration: ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...