All Apps and Add-ons

Eventgen.py missing - intended?

romanwaldecker
Path Finder

I am missing the eventgen.py file in the $SPLUNK_HOME/etc/apps/<'Eventgen_app_name>/bin/ folder after having installed SA-Eventgen through Splunkbase. It is also missing in the eventgen GIT repository (there doesn't even exist a bin folder!).

Is this intended?
If not, any ideas why I don't get it?

The eventgen.py file is mentioned in several references and it seems to me that it is essential for the App to run. I aligned my setup with several tutorials out there and am pretty sure that the rest of my configuration is in line. When troubleshooting, I tried to execute eventgen.py manually - when I discovered that it is missing.

0 Karma
1 Solution

romanwaldecker
Path Finder

Got it - I downloaded the wrong branch from the repository (the selected-by-default 'develop' branch).
Doesn't explain though, why the Splunkbase App did not have the .py-file...

View solution in original post

bkogami
Explorer

I downloaded Eventgen 6.4.0 from Splunkbase, installed it from the Splunk web console and it created a "SA-Eventgen" app.

It did not include eventgen.py

Anyone have any ideas? Why is it missing? Am I doing something wrong?

0 Karma

romanwaldecker
Path Finder

Got it - I downloaded the wrong branch from the repository (the selected-by-default 'develop' branch).
Doesn't explain though, why the Splunkbase App did not have the .py-file...

Get Updates on the Splunk Community!

Alpha Launch: AI-Assisted Auto-Schematization for CIM

Streamlining Data Onboarding: Announcing the Alpha Release of AI-Assisted Auto-Schematization For many Splunk ...

Enterprise Security(ES) Essentials or Premier? Let's discuss Splunk ES Editions on ...

  Hi everyone, Last year at .conf25, we shared something exciting: Splunk Enterprise Security is evolving ...

[Puzzles] Solve, Learn, Repeat: Advent of Code - Day 5

Advent of CodeIn order to participate in these challenges, you will need to register with the Advent of Code ...