All Apps and Add-ons

Workday Addon - Request Failed with Error Code 401

zward
Path Finder

Hello,

I am in the process of working with our Workday team to setup Splunk to ingest Workday activity logs. As we work through the process we have our Workday area configured within Workday, including our tenant details, as well as all information generated from the Workday page entered into the Splunk setup page. We are not seeing any data come in from the Workday app into our index. When I check the Workday log, I see the below errors. It appears to be the client connecting to the API for Workday but receiving an error 401. Is there a way we can troubleshoot or fix this problem or does anyone have any thoughts on how to fix this issue? Your help is appreciated.

2018-08-14 19:44:28,848 INFO pid=1032 tid=MainThread file=connectionpool.py:_new_conn:758 | Starting new HTTPS connection (1): 127.0.0.1
2018-08-14 19:44:33,898 INFO pid=1032 tid=MainThread file=connectionpool.py:_new_conn:758 | Starting new HTTPS connection (1): 127.0.0.1
2018-08-14 19:44:42,471 INFO pid=1032 tid=MainThread file=connectionpool.py:_new_conn:758 | Starting new HTTPS connection (1): 127.0.0.1
2018-08-14 19:44:51,048 INFO pid=1032 tid=MainThread file=splunk_rest_client.py:_request_handler:100 | Use HTTP connection pooling
2018-08-14 19:44:51,049 INFO pid=1032 tid=MainThread file=connectionpool.py:_new_conn:758 | Starting new HTTPS connection (1): 127.0.0.1
2018-08-14 19:44:51,063 INFO pid=1032 tid=MainThread file=base_modinput.py:log_info:293 | Starting input "user_activity" for window (2018-08-15T00:09:51Z, 2018-08-15T00:39:51Z)
2018-08-14 19:44:51,403 ERROR pid=1032 tid=MainThread file=base_modinput.py:log_error:307 | Request failed with error code (401), retries exhausted
0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

At .conf26, Don’t Just See What’s Next. Help Shape It at Innovation Labs.

Long before a new capability reaches the keynote stage, it begins as an idea waiting to be tested. At ...

Forwarder Topology Guidance: Intermediate HF vs Intermediate UF

Why Universal Forwarders Should Not Be Used as Intermediate Forwarders A practical Splunk forwarding topology ...

Data Management Digest – August 2026

Data Management Digest   Welcome to the August 2026 edition of Data Management Digest! August was a big month ...