All Apps and Add-ons

Why the error while collecting logs using Azure Log Analytics Kusto Grabber?

meghasinghal
Engager

We would like to collect logs from Azure Log Analytics workspace and have configured addon Azure Log Analytics Kusto Grabber, but we are getting below error while collecting the logs-

2022-05-04 08:54:52,440 ERROR pid=29779 tid=MainThread file=base_modinput.py:log_error:309 | Get error when collecting events. Traceback (most recent call last): File "$SPLUNK HOME$/etc/apps/TA-azure-log-analytics-kql-grabber/bin/ta_azure_log_analytics_kql_grabber/aob_py3/modinput_wrapper/base_modinput.py", line 128, in stream_events self.collect_events(ew) File "$SPLUNK HOME$/etc/apps/TA-azure-log-analytics-kql-grabber/bin/azure_log_analytics.py", line 88, in collect_events input_module.collect_events(self, ew) File "$SPLUNK HOME$/etc/apps/TA-azure-log-analytics-kql-grabber/bin/input_module_azure_log_analytics.py", line 94, in collect_events raise e File "$SPLUNK HOME$/etc/apps/TA-azure-log-analytics-kql-grabber/bin/input_module_azure_log_analytics.py", line 63, in collect_events rows = len(result.json()["tables"][0]["rows"]) KeyError: 'tables'

Labels (1)
Tags (4)
0 Karma
Get Updates on the Splunk Community!

Infographic provides the TL;DR for the 2023 Splunk Career Impact Report

We’ve been shouting it from the rooftops! The findings from the 2023 Splunk Career Impact Report showing that ...

Splunk Lantern | Getting Started with Edge Processor, Machine Learning Toolkit ...

Splunk Lantern is Splunk’s customer success center that provides advice from Splunk experts on valuable data ...

Enterprise Security Content Update (ESCU) | New Releases

In the last month, the Splunk Threat Research Team (STRT) has had 2 releases of new security content via the ...