We are unable to get the weblogic domains & server details in the "Weblogic App for Splunk" in the splunk applications.
Please advise regarding this.
Installed splunk (6.2.2-255606) in the linux server, Same server we have installed weblogic server (10.3.6) and created domain as well.Here we are trying to achieve this weblogic applications to integrate with splunk app.
Splunk Home: /oracle/Splunk/splunk
Weblogic Home: /oracle/app/Middleware/wlserver_10.3
1) Deployed add-on file "oracle-weblogic-app-for-splunk10-beta2.tgz" in the splunk application.
2) Deployed Sideview utils file "sideviewutils.tar" in the splunk application.
3) Updated the required weblogic & admin server details in inputs.conf and setWlstEnv.sh, as per the TA installation document. Later we placed the files in the below stated location
E.g.: Below lines are modified in the inputs.conf file in our environment, did same for EVERY HOUR & # EVERY DAY
[script://./bin/runWlstScriptsMinute.sh /oracle/Splunk/splunk/etc/deployment-apps/Function1WebLogicServerTA /oracle/app/Middleware/wlserver10.3]
disabled = false
index = wls
sourcetype = wlstrash
interval = 300
E.g.: Below lines are modified in the setWlstEnv.sh in our environment
Both files are updated as per the TA document "Splunk for Oracle Weblogic Server (v.1.0.1Beta)".
Then moving forward to step 6, documents says that "Once you have completed these configurations, deploy the TA to the forwarder residing on the WLS Admin Server by either Using the Splunk deployment server or copying the TA to the forwarder manually."
Please advise me regarding this deployment, am not clear in this step. Currently I have kept this config file folder "Function1WebLogicServerTA" under "$SPLUNK_HOME/etc/deployment-apps/". Please let me know where & how to deploy this files.
While the use of the Splunk Deployment Server is an organized and scalable solution for Splunk deployments, it does not appear that you need one in this case. Try moving the Function1WebLogicServerTA to $SPLUNK_HOME/etc/apps (/oracle/Splunk/splunk/etc/apps). When you do, you will also need to edit your inputs.conf to reflect the new location.
Thanks for your valueable suggestions.
As advised i will move the Function1WebLogicServerTA to $SPLUNK_HOME/etc/apps (/oracle/Splunk/splunk/etc/apps) folder in my environment.
Also please let me know, how to deploy after that.
It means (How to get the weblogic logs and managed server logs details in the splunk applications), Please advise if you aware.
The app is pre-configured to forward the logs details and the console info to the indexer. Make sure your path is correct in the inputs.conf. If errors persist follow the troubleshooting document that comes along with the deployment package. You may also need to make sure the weblogic and splunk path is correctly reflected in the shell scripts in the bin folder.