All Apps and Add-ons

Splunk add-on and app logs

deepak02
Path Finder

Hi,

I have a setup in which the deployment server pushes the Splunk_TA_NIX add-on, Splunk unix app and JMX add-on to the deployment client, but the data is not flowing in.

1) Which logs should I check? Do the apps/add-ons have a separate log file, or are they included in the splunkd.log?

2) Which terms should I use to filter out the app and add-on logs from the splunkd.log?

Thanks,
Deepak

Tags (1)
0 Karma
1 Solution

mrgibbon
Contributor

Are you sending the deployment clients logs back to your indexer(s)?
If so, check the _internal index for clues.
"index=_internal error" might be a good start.

View solution in original post

0 Karma

mrgibbon
Contributor

Are you sending the deployment clients logs back to your indexer(s)?
If so, check the _internal index for clues.
"index=_internal error" might be a good start.

0 Karma
Get Updates on the Splunk Community!

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...

[Puzzles] Solve, Learn, Repeat: Nested loops in Event Conversion

This challenge was first posted on Slack #puzzles channelFor a previous puzzle, I needed a set of fixed-length ...

Your Guide to Splunk Digital Experience Monitoring

A flawless digital experience isn't just an advantage, it's key to customer loyalty and business success. But ...