All Apps and Add-ons

Could i Install Splunk_TA_nix on debian?

ammul440
New Member

Please suggest I am finding difficult in configuing the host on splunk server to monitor apache logs.
I have installed splunk server on debian. I have a web GUI now.
I have installed universalforwader on host (the host where the apachelogs are configured) as per the link below.

https://www.learnsplunk.com/how-to-send-linux-logs-to-splunk.html

now my question is here finding or installing the Splunk_TA_nix app on debian? please suggest

Tags (1)
0 Karma

chrisyounger
SplunkTrust
SplunkTrust

Yes you can install the Splunk_TA_Nix on Debian. Follow the instructions here: http://docs.splunk.com/Documentation/AddOns/released/UnixLinux/About

This will allow you to monitor the system health. You don't need this app to monitor apache logs though.

All the best.

0 Karma

ammul440
New Member

Thanks for the reply.

Splunk_TA_apache app was installed to monitor apache logs. unforunately after adding data input i am unable to moniotr the logs as it says "No result found".

source="/var/log/apache2/access.log" host="example.com" index="main" sourcetype="apache:access"

these are my inputs.conf
[monitor:///var/log/apache2/access.log]
disabled = 1
host = example.com
index = main
sourcetype = apache:access

https://docs.splunk.com/Documentation/AddOns/released/ApacheWebServer/Configure -- shuld i set this up in sites-available?

0 Karma

chrisyounger
SplunkTrust
SplunkTrust

make sure you set disabled=0

0 Karma

ammul440
New Member

yes i have tried setting this also. but still i could not see anything

0 Karma
Get Updates on the Splunk Community!

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Stronger Security with Federated Search for S3, GCP SQL & Australian Threat ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...