All Apps and Add-ons

SplunkForNagios not querying Nagios

chrismralph
New Member

Hi,

I have been through various installation guidelines for this app using livestatus and am stuck.

Live status is workin and I can query as follows:

nc nagios 6557 < nagios-hosts | grep host1

Result:

host1,10.20.53.64,host1,0

Based on tis result I know that the mk-Livestatus agent is responding. I have modified all xml and py files as instructed but when I open the livestatus dashboard the query is not even made to the server which I can see through a tcpdump that is running.

Any ideas?

Regards

Chris

Tags (1)
0 Karma

ivedasolutions
New Member

I know this is extremely old, but did you ever figure this out? I am having massive problems with the Livestatus dashboard not working on my install. Thank you.

0 Karma

chrismralph
New Member

ok so after configuring the reciver and sending data using a universal forwarder it became clear that the livestatus check only runs if there is a known host in the index not the nagios instance.

The problem I have now is that whilst the livestatus query is being made, it is only returining details for the single host configured as the src_host.

Any ideas?

0 Karma
Get Updates on the Splunk Community!

Upcoming Webinar: Unmasking Insider Threats with Slunk Enterprise Security’s UEBA

Join us on Wed, Dec 10. at 10AM PST / 1PM EST for a live webinar and demo with Splunk experts! Discover how ...

.conf25 technical session recap of Observability for Gen AI: Monitoring LLM ...

If you’re unfamiliar, .conf is Splunk’s premier event where the Splunk community, customers, partners, and ...

A Season of Skills: New Splunk Courses to Light Up Your Learning Journey

There’s something special about this time of year—maybe it’s the glow of the holidays, maybe it’s the ...