All Apps and Add-ons

Why are configuration dashboards empty after upgrading the Splunk App for Stream to 6.5.1?

mkemmerer
Explorer

I upgraded the Splunk App for Stream to 6.5.1, and now the "Configure Streams", "IP Address Filters", and "Distributed Forwarder Manager" dashboards do not populate with anything except static data.

Even though it is compatible with versions as far back as 6.2, I even upgraded the search head it's running on from 6.3.3 to 6.4.1 in the event that that was the problem. It's still not working.

Any and all help is appreciated.

0 Karma
1 Solution

vshcherbakov_sp
Splunk Employee
Splunk Employee

The most common cause of this problem is failed KV store on the search head (can be due to expired SSL certificate among other reasons). Do you have any errors in mongod.log and/or splunk_app_stream.log?

View solution in original post

vshcherbakov_sp
Splunk Employee
Splunk Employee

The most common cause of this problem is failed KV store on the search head (can be due to expired SSL certificate among other reasons). Do you have any errors in mongod.log and/or splunk_app_stream.log?

mkemmerer
Explorer

You were right about the expired SSL cert. I created a new server-cert and we're off to the races. Thanks!

Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.
Get Updates on the Splunk Community!

Tech Talk Recap | Mastering Threat Hunting

Mastering Threat HuntingDive into the world of threat hunting, exploring the key differences between ...

Observability for AI Applications: Troubleshooting Latency

If you’re working with proprietary company data, you’re probably going to have a locally hosted LLM or many ...

Splunk AI Assistant for SPL vs. ChatGPT: Which One is Better?

In the age of AI, every tool promises to make our lives easier. From summarizing content to writing code, ...