All Apps and Add-ons

Splunk-git hub app data ingestion issue

indreshdowjones
Explorer
We have installed following two apps in our splunk environment to get data into our splunk enterprise environment
 
1) GitHub App for Splunk [https://splunkbase.splunk.com/app/5596/]
2) GitHub Audit Log Monitoring Add-On for Splunk[https://splunkbase.splunk.com/app/5595/]
 
We have configured both webhook and access token based ingestion setup to get logs into splunk but we are getting following errors and not able to see the data in dashboard 
 
05-11-2022 20:59:00.164 +0000 ERROR ExecProcessor - message from "/opt/splunk/bin/python3.7 /opt/splunk/etc/apps/github-audit-log-monitoring-add-on-for-splunk/bin/ghe_audit_log_monitoring.py" RuntimeError: Could not fetch audit log data. Please check your configuration, access token scope / correctness and API rate limits. status_code: 404 - url: https://github.dowjones.net/api/graphql/enterprises/enterprise-name/audit-log?phrase=&include=all&af... - Response: {"message":"Not Found","documentation_url":"https://docs.github.com/enterprise/3.3/graphql"}
host = xxxxxxxxs.netlog_level = ERRORsource = /opt/splunk/var/log/splunk/splunkd.logsourcetype = splunkd

5/11/22 8:59:00.164 PM
05-11-2022 20:59:00.164 +0000 ERROR ExecProcessor - message from "/opt/splunk/bin/python3.7 /opt/splunk/etc/apps/github-audit-log-monitoring-add-on-for-splunk/bin/ghe_audit_log_monitoring.py" response.status_code, response.url, response.text
host = **************
 
any troubleshooting steps would be helpful 
 
Labels (3)
Tags (1)
0 Karma

indreshdowjones
Explorer

@derkkila-splunk  @smcdonald20 @cbehr  any help on this error? 

Tags (1)
0 Karma
Get Updates on the Splunk Community!

Automatic Discovery Part 1: What is Automatic Discovery in Splunk Observability Cloud ...

If you’ve ever deployed a new database cluster, spun up a caching layer, or added a load balancer, you know it ...

Real-Time Fraud Detection: How Splunk Dashboards Protect Financial Institutions

Financial fraud isn't slowing down. If anything, it's getting more sophisticated. Account takeovers, credit ...

Splunk + ThousandEyes: Correlate frontend, app, and network data to troubleshoot ...

 Are you tired of troubleshooting delays caused by siloed frontend, application, and network data? We've got a ...