All Apps and Add-ons

How do I disable the Home Monitor app without losing data?

AzJimbo
Path Finder

How do I disable this app without losing data? This app has hijacked my syslog, that was configured to go into a different index. I want my syslog back. Also, it only works with specific FiOS equipment. It should better named to avoid this confusion. Nothing on the main page specified FiOS only.

1 Solution

MuS
SplunkTrust
SplunkTrust

Hi AzJimbo,

either set in the apps local directory, in the app.conf file:

[install]
state = disabled

and restart Splunk or go inside the UI to

http[s]://Yoursplunkserver:[yourport]/manager/search/apps/local

and click on disable on the apps line.

hope this helps ...

cheers, MuS

View solution in original post

MuS
SplunkTrust
SplunkTrust

Hi AzJimbo,

either set in the apps local directory, in the app.conf file:

[install]
state = disabled

and restart Splunk or go inside the UI to

http[s]://Yoursplunkserver:[yourport]/manager/search/apps/local

and click on disable on the apps line.

hope this helps ...

cheers, MuS

AzJimbo
Path Finder

Thanks MuS - The disable in the UI wasn't enabled. I figured it out - I had to go into the data input and repoint the syslog inputs (UDP & TCP) back to the main index. Luckily, my custom field extractions were re-enabled. Once I repointed the data inputs, the 'disable' option in the apps tab was there.

0 Karma
Get Updates on the Splunk Community!

Index This | I am a number, but when you add ‘G’ to me, I go away. What number am I?

March 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...

What’s New in Splunk App for PCI Compliance 5.3.1?

The Splunk App for PCI Compliance allows customers to extend the power of their existing Splunk solution with ...

Extending Observability Content to Splunk Cloud

Register to join us !   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to ...