All Apps and Add-ons

mimecast app not loading tabs for inputs and configuration

mjm295
Path Finder

Hi

We installed a new heavy forwarder, splunk v7.3.5 on Red Hat 7.7
added mimecase app v3.1.5

Splunk runs as user "splunk"
All files under /opt/splunk are owned byt that user.
Also double cheked /opt/splunk/etc/apps/TA-mimecast-for-splunk and below are all splunk:splunk

When I navigate to the mimecast app, the page loads as expected.
https://server.name:8000/en-US/app/TA-mimecast-for-splunk/mc_home

When I click Configuarion it loads the 3 sub tabs (Proxy/Logging/Caching) with proxy selected, but its just a never ending loeading icon under there.

Logging and Caching sub tabs load OK and making changes where updates the conf files in the local dir as expeted.

Going back to the proxy tab - again results in the never ending loading message.

Similarly The main inputs tab
https://server.name:8000/en-US/app/TA-mimecast-for-splunk/inputs
just give the never ending loading issue.

Other tabls seem to load OK and display some things.

Any ideas?

Thanks
Mark

0 Karma

mjm295
Path Finder

FINAL UPDATE FROM ME - this was caused by Microsoft graphing add-on had some credential errors (copied/deployed form another forwarder by mistake) removing this app and its all working again as expected.

0 Karma

mjm295
Path Finder

Seems this may be a python issue
Works awesome on older boxes running 2.6.x
Does not work on boxes only running python 2.7.x

0 Karma

mjm295
Path Finder

tried again on different servers to try and work this out.

So 2 different Linux servers failed (Red Hat 6 and Red Hat 7)

1 Linux worked (AMZN Linux v1) - as in can get to proxy config and inputs pages
1 Windows worked

Wierd.

0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.
Get Updates on the Splunk Community!

Data Persistence in the OpenTelemetry Collector

This blog post is part of an ongoing series on OpenTelemetry. What happens if the OpenTelemetry collector ...

Introducing Splunk 10.0: Smarter, Faster, and More Powerful Than Ever

Now On Demand Whether you're managing complex deployments or looking to future-proof your data ...

Community Content Calendar, September edition

Welcome to another insightful post from our Community Content Calendar! We're thrilled to continue bringing ...