Alerting

"view results in splunk" link in alert mail is taking to results not found(404) page

vasanthi77
Explorer

Hi Everyone ,

Link in alert mail generated by splunk is returning page not found .
URL has my search head hostname and i logged in as administrator.
ttl in alerts.conf in 2p.
Can someone help me what is the issue.?

Tags (1)
0 Karma

vasanthi77
Explorer

Can someone please help here

0 Karma

nvanderwalt_spl
Splunk Employee
Splunk Employee

Hi,

You did not provide your Splunk version, but this sounds like a bug that was fixed in Splunk 6.3.2 and 6.4.0

0 Karma

vasanthi77
Explorer

Splunk version i m using is 6.5

0 Karma

vasanthi77
Explorer

can someone help me here please

0 Karma

DavidHourani
Super Champion

Hi @vasanthi77,

Have a look here, same problem with fix :
https://answers.splunk.com/answers/413902/why-am-i-getting-a-404-not-found-page-not-found-er.html

Let me know if it helps.

Cheers,
David

0 Karma

vasanthi77
Explorer

Hi David,
Thanks for the link.
I just found something is wrong with my view results in splunk URL.

I am getting redirected to below link when i click on view results.(which is not working)

https://hostname:port/app/app_name/@go?sid=scheduler__admin__app_name__RMD563c289cdd5c8e2bb_at_15614...

If i replace "@go" to "search" in url , it is working
i.e..,
https://hostname:port/app/app_name/search?sid=scheduler__admin__app_name__RMD563c289cdd5c8e2bb_at_15...

I changed request.ui_dispatch_app from my app name to "search"
still getting same url.
Do u have any idea why this is happening?

0 Karma

BlueSocket
Communicator

Did you fix this issue? I am getting the same on my Search Head Cluster.

0 Karma

vasanthi77
Explorer

HI David ,

My app is not invisible app.

0 Karma

DavidHourani
Super Champion

Hi @vasanthi77,
can you check in your jobs tab if you can find the results and access them from there ?

0 Karma

vasanthi77
Explorer

Hi David ,
yes i m able to access and view results from jobs tab

0 Karma
Get Updates on the Splunk Community!

.conf24 | Registration Open!

Hello, hello! I come bearing good news: Registration for .conf24 is now open!   conf is Splunk’s rad annual ...

ICYMI - Check out the latest releases of Splunk Edge Processor

Splunk is pleased to announce the latest enhancements to Splunk Edge Processor.  HEC Receiver authorization ...

Introducing the 2024 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...