Getting Data In

How to solve this error: The system cannot find the file specified in splunkd log of splunk universal forwarder

varshini_97
Explorer

Hi,

I am trying to run a python script on my universal forwarder which send data to splunk cloud instance. I have added the path in inputs.conf and there is not events found in my index.

While checking on splunkd logs, there shows a error "The system cannot find the file specified".

what could be the problem?

Labels (2)
0 Karma
1 Solution

varshini_97
Explorer

Hi @gcusello ,

The issue is fixed now.

The forwarder was searching for python3.exe where i have python.exe in my splunkuniversalforwarder folder. So it couldn't find the file. 

The issue is fixed as I renamed the file name.

Thanks for ur solutions @gcusello 

View solution in original post

0 Karma

gcusello
Esteemed Legend

Hi @varshini_97,

I suppose that you already checked the filename and the path.

Did you checked also if the user you're using to run the script has the grants on that file and folder?

Ciao.

Giuseppe

0 Karma

varshini_97
Explorer

Hi @gcusello ,

I have checked the filename and path.

Regarding the grants for the file, I am unable to add my splunk user in the security tab of Access window.

 

0 Karma

gcusello
Esteemed Legend

Hi @varshini_97,

as you can suppose, the user used to launch the script must have the execution grants.

Try to execute it using the same user and see if you still have the issue.

Ciao.

Giuseppe

0 Karma

varshini_97
Explorer

Hi @gcusello ,

The issue is fixed now.

The forwarder was searching for python3.exe where i have python.exe in my splunkuniversalforwarder folder. So it couldn't find the file. 

The issue is fixed as I renamed the file name.

Thanks for ur solutions @gcusello 

0 Karma

gcusello
Esteemed Legend

Hi @varshini_97,

good for you, see next time!

Please accept one answer for the other people of Community

Ciao and happy splunking

Giuseppe

P.S.: Karma Points are appreciated 😉

Get Updates on the Splunk Community!

.conf23 Registration is Now Open!

Time to toss the .conf-etti 🎉 —  .conf23 registration is open!   Join us in Las Vegas July 17-20 for ...

Don't wait! Accept the Mission Possible: Splunk Adoption Challenge Now and Win ...

Attention everyone! We have exciting news to share! We are recruiting new members for the Mission Possible: ...

Unify Your SecOps with Splunk Mission Control

In today’s post, I'm excited to share some recent Splunk Mission Control innovations. With Splunk Mission ...