All Apps and Add-ons

Splunk Addon Builder app automatically adds a data input.

spamarea1
Explorer

Addon Builder 4.5.0.

This app adds a data input automatically. This is a good thing, I then go to add new to complete the configuration. Everything is running good.

A few days later, I thought of a better name for the input. I cloned the original, put a different name, and kept all the same config.

I disabled the original.

I noticed that I can still run the script and see the API output, but when I searched for the output, I did not find it. I started to see 401 errors instead. I went back to the data inputs and disabled the clone and enabled the original and all is back to normal.

Is there a rule to cloning the data input for the addon builder that says not to clone?

 

 

 

Labels (1)
0 Karma

livehybrid
SplunkTrust
SplunkTrust

Hi @spamarea1 

Do you have any encrypted fields in the input configuration? It might be that these arent copied when an input is cloned - this might explain why you are getting a 401 error from your API if its missing some credentials/password etc.

If you've clone it, try updating any encrypted value - if appropriate.

🌟 Did this answer help you? If so, please consider:

  • Adding karma to show it was useful
  • Marking it as the solution if it resolved your issue
  • Commenting if you need any clarification

Your feedback encourages the volunteers in this community to continue contributing

0 Karma

spamarea1
Explorer

Thanks for replying but no encryption. I used the modular frame of the python script that it gave me as a template.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Vibe-coding, AI, and Splunkcraft: Highlights from the .conf26 Builder Bar

If you stopped by the Builder Bar at .conf26, thank you! This year, we brought ...

Thanks for the Memories: .conf26 Took Learning to New Heights

Thank you, Splunk Community, for making .conf26 in Denver one for the books. From packed Splunk University ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...