Child processes by lea_loggrabber do not terminate making later-triggered-parent-process into hung state. This happens only for one of the entity (lets call it entity1) while for other (entity2) it is fine.
Due to this at the time of next run (after 60 secs), splunk finds the loggrabber for entity1 already running and does not trigger another instance and runs the loggrabber for entity2.
Hence, we are able to pull logs from entity2 however not from entity1.
Any suggestion about troubleshooting this would be much appreciated.
Splunk 6.0.4 (build 207768)
Splunk_TA_opseclea_linux22 - Version: 1.11.1
Posting below are the running processes at this moment (including child and hung parent processes) -