All Apps and Add-ons

DB connect unable to query

Man100
Loves-to-Learn

inputs setup correctly as I can access to other tables but I get the following error for index=_internal sourcetype="dbx*" error

I can not launch queries directly in splunk but rights are fine . Other tables seem to be able to read from splunk by using the inputs file, not the gui but I think they do not have null fields. Trying to read tables from a MSSql database from Splunk in Centos with a RO account.

 

2021-03-04 14:32:50.559 +0000 [QuartzScheduler_Worker-7] ERROR org.easybatch.core.job.BatchJob - Unable to open record reader java.lang.IllegalArgumentException: argument "content" is null at com.fasterxml.jackson.databind.ObjectMapper._assertNotNull(ObjectMapper.java:4735) at com.fasterxml.jackson.databind.ObjectMapper.readValue(ObjectMapper.java:3433) at com.splunk.dbx.server.dbinput.task.DbInputCheckpointRepository.parseOutput(DbInputCheckpointRepository.java:200) at com.splunk.dbx.server.dbinput.task.DbInputCheckpointRepository.loadImpl(DbInputCheckpointRepository.java:269) at com.splunk.dbx.server.dbinput.task.DbInputCheckpointRepository.load(DbInputCheckpointRepository.java:148) at com.splunk.dbx.server.dbinput.task.DbInputTask.loadCheckpoint(DbInputTask.java:142) at com.splunk.dbx.server.dbinput.recordreader.DbInputRecordReader.executeQuery(DbInputRecordReader.java:79) at com.splunk.dbx.server.dbinput.recordreader.DbInputRecordReader.open(DbInputRecordReader.java:52) at org.easybatch.core.job.BatchJob.openReader(BatchJob.java:140) at org.easybatch.core.job.BatchJob.call(BatchJob.java:97) at org.easybatch.extensions.quartz.Job.execute(Job.java:59) at org.quartz.core.JobRunShell.run(JobRunShell.java:202) at org.quartz.simpl.SimpleThreadPool$WorkerThread.run(SimpleThreadPool.java:573)

can anybody help ? No Java expertise in house.

Labels (1)
Tags (1)
0 Karma
Get Updates on the Splunk Community!

What's new in Splunk Cloud Platform 9.1.2312?

Hi Splunky people! We are excited to share the newest updates in Splunk Cloud Platform 9.1.2312! Analysts can ...

What’s New in Splunk Security Essentials 3.8.0?

Splunk Security Essentials (SSE) is an app that can amplify the power of your existing Splunk Cloud Platform, ...

Let’s Get You Certified – Vegas-Style at .conf24

Are you ready to level up your Splunk game? Then, let’s get you certified live at .conf24 – our annual user ...