All Apps and Add-ons

How do I disable the Home Monitor app without losing data?

AzJimbo
Path Finder

How do I disable this app without losing data? This app has hijacked my syslog, that was configured to go into a different index. I want my syslog back. Also, it only works with specific FiOS equipment. It should better named to avoid this confusion. Nothing on the main page specified FiOS only.

1 Solution

MuS
SplunkTrust
SplunkTrust

Hi AzJimbo,

either set in the apps local directory, in the app.conf file:

[install]
state = disabled

and restart Splunk or go inside the UI to

http[s]://Yoursplunkserver:[yourport]/manager/search/apps/local

and click on disable on the apps line.

hope this helps ...

cheers, MuS

View solution in original post

MuS
SplunkTrust
SplunkTrust

Hi AzJimbo,

either set in the apps local directory, in the app.conf file:

[install]
state = disabled

and restart Splunk or go inside the UI to

http[s]://Yoursplunkserver:[yourport]/manager/search/apps/local

and click on disable on the apps line.

hope this helps ...

cheers, MuS

AzJimbo
Path Finder

Thanks MuS - The disable in the UI wasn't enabled. I figured it out - I had to go into the data input and repoint the syslog inputs (UDP & TCP) back to the main index. Luckily, my custom field extractions were re-enabled. Once I repointed the data inputs, the 'disable' option in the apps tab was there.

0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) v3.54.0

The Splunk Threat Research Team (STRT) recently released Enterprise Security Content Update (ESCU) v3.54.0 and ...

Using Machine Learning for Hunting Security Threats

WATCH NOW Seeing the exponential hike in global cyber threat spectrum, organizations are now striving more for ...

New Learning Videos on Topics Most Requested by You! Plus This Month’s New Splunk ...

Splunk Lantern is a customer success center that provides advice from Splunk experts on valuable data ...