Hello guys, I am new to splunk and I am trying to input data from a perl script.
Script is very simple, a helloworld.pl that prints "timestamp hello world". (running the script from command line output the correct string...
I have already added the script to splunk/bin/scripts and created a script data input configuration on the UI (generic_single_line results). When searching for data though i get a No results found. / 0 events.
Any help on what I am missing?
Hi lemmerich,
try running your script from the CLI
$SPLUNK_HOME/bin/splunk cmd $SPLUNK_HOME/bin/scripts/helloworld.pl
and see what happens. Next check index=_internal sourcetype=splunkd
for any message related to helloworld.pl
. Check the inputs.conf
and verify the index setting for your script and search the index over all time
.
Hope this helps ...
cheers, MuS