All Apps and Add-ons

Splunk Health Check Overview: How can we remove messages from this app?

Arpit_S
Path Finder

Getting "message from "python /opt/splunk/etc/slave-apps/Splunk_TA_aws/bin/splunk_ta_aws_sqs.py" 'placeholder': {'title': 'placeholder'}" in health overview app in Splunk.

The Splunk_TA_aws on our instance is already disabled.

What can we modify to get rid of these messages.

Thanks.

0 Karma

hansuleberg
Path Finder

Hi.

I get this warnings in SPLUNK ES of a part of TA that we do not use. Any idea to get this turned off/disabled?

Search peer [servername role indexer ] has the following message: Unable to initialize modular input "splunk_ta_aws_sqs" defined inside the app "Splunk_TA_aws": Unable to locate suitable script for introspection.

0 Karma

Arpit_S
Path Finder

I have enabled the TA in our instance and we are still able to see the Disable button next to the TA.

Also, doesn't it mean that disabling the app will disable all the configurations related to it?

0 Karma

akira_splunk
Splunk Employee
Splunk Employee

You likely have inputs within the app still enabled. Do not disable the app. Disable the inputs instead. If you want to limit access to the splunk_TA_aws app, limit the access to certain roles instead.

And FYI, after disabling the splunk_TA_aws on my system, I was prompted that a restart is required. I re-enabled the splunk_TA_aws app first, then restart my system. Since then the disable app link/button is gone. So perhaps it's not meant to be disabled.

And one last note, make sure your splunk_TA_aws inputs are setup on a heavy forwarder, NOT on your search head.

0 Karma

Arpit_S
Path Finder

Can anyone help??

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Mastering Threat Intelligence in ES 8.5, Splunk AI Assistant v2, and More from Splunk ...

Splunk Lantern is Splunk’s customer success center that provides practical guidance from Splunk experts on key ...

Break the Build: Inside the KubeDoom Lounge at .conf26

    You step up to the machine. The pixelated corridors of a certain 1993 FPS load in front of you, EMP Pulse ...

Splunk Auto Ingestion Parallel Pipeline Scaling

Why this feature matters Many Splunk environments experience ingestion pressure long before the host is fully ...