All Apps and Add-ons

Jenkins data coming into Splunk but not readable by App dashboard

mooveldcampbell
New Member

This returns data:

index=jenkins_statistics (host="jenkins.host.com" ) 

when I add event_tag=job_event, that field does not exist on any of the records from Jenkins.

Running Splunk 6.5 and 1.0.4 of the Splunk App on a Heavy Forwarder and Search Head

0 Karma

txiao_splunk
Splunk Employee
Splunk Employee

field event_tag should be extracted at index time on heavy forwarder (if you installed the app on heavy forwarder and using the default source type), could you check the sourcetype by

index=jenkins_statistics "job_event" |stats values(sourcetype)

it should be json:jenkins.

0 Karma
Get Updates on the Splunk Community!

.conf24 | Day 0

Hello Splunk Community! My name is Chris, and I'm based in Canberra, Australia's capital, and I travelled for ...

Enhance Security Visibility with Splunk Enterprise Security 7.1 through Threat ...

 (view in My Videos)Struggling with alert fatigue, lack of context, and prioritization around security ...

Troubleshooting the OpenTelemetry Collector

  In this tech talk, you’ll learn how to troubleshoot the OpenTelemetry collector - from checking the ...