Getting Data In

How to solve this error: The system cannot find the file specified in splunkd log of splunk universal forwarder

varshini_97
Explorer

Hi,

I am trying to run a python script on my universal forwarder which send data to splunk cloud instance. I have added the path in inputs.conf and there is not events found in my index.

While checking on splunkd logs, there shows a error "The system cannot find the file specified".

what could be the problem?

Labels (2)
0 Karma
1 Solution

varshini_97
Explorer

Hi @gcusello ,

The issue is fixed now.

The forwarder was searching for python3.exe where i have python.exe in my splunkuniversalforwarder folder. So it couldn't find the file. 

The issue is fixed as I renamed the file name.

Thanks for ur solutions @gcusello 

View solution in original post

0 Karma

gcusello
Esteemed Legend

Hi @varshini_97,

I suppose that you already checked the filename and the path.

Did you checked also if the user you're using to run the script has the grants on that file and folder?

Ciao.

Giuseppe

0 Karma

varshini_97
Explorer

Hi @gcusello ,

I have checked the filename and path.

Regarding the grants for the file, I am unable to add my splunk user in the security tab of Access window.

 

0 Karma

gcusello
Esteemed Legend

Hi @varshini_97,

as you can suppose, the user used to launch the script must have the execution grants.

Try to execute it using the same user and see if you still have the issue.

Ciao.

Giuseppe

0 Karma

varshini_97
Explorer

Hi @gcusello ,

The issue is fixed now.

The forwarder was searching for python3.exe where i have python.exe in my splunkuniversalforwarder folder. So it couldn't find the file. 

The issue is fixed as I renamed the file name.

Thanks for ur solutions @gcusello 

0 Karma

gcusello
Esteemed Legend

Hi @varshini_97,

good for you, see next time!

Please accept one answer for the other people of Community

Ciao and happy splunking

Giuseppe

P.S.: Karma Points are appreciated 😉

Get Updates on the Splunk Community!

Observability Newsletter Highlights | March 2023

 March 2023 | Check out the latest and greatestSplunk APM's New Tag Filter ExperienceSplunk APM has updated ...

Security Newsletter Updates | March 2023

 March 2023 | Check out the latest and greatestUnify Your Security Operations with Splunk Mission Control The ...

Platform Newsletter Highlights | March 2023

 March 2023 | Check out the latest and greatestIntroducing Splunk Edge Processor, simplified data ...