hello, I have installed the add-on (Jira issue input add-on: https://splunkbase.splunk.com/app/6168) for collecting jira data in our splunk enterprise. We have configured the account and required input. However cant see any data getting ingested in splunk. Internal jira log (ta_jira_issue_input_jira_issue.log) says below-
2023-07-13 07:00:31,772 INFO pid=23702 tid=MainThread file=base_modinput.py:log_info:295 | The input xyz_jira_input ran successfully! There were no (new) Jira issues indexed during this interval.
Any idea why the data is not getting ingested? Happy to share more details as needed.
Thanks
I hope this helps!!! If it does kindly consider upvoting/accepting the answer!!
Thanks @VatsalJagani , the query I used in JQL is below- and this helped in ingesting the data.
project IN (SD)
However, There is a limitation to this Jira issue input add-on which we found. It ingests only 500 tickets and leaves the rest. On next poll , since previous job was not completed it tries pulling the data again but brings the same 500 ticket entries again. This not only results in duplicates in every poll but also missing data (if you gave >500 tickets). Are you aware of this limitation and any fix?
Thanks
@sweetie - Ensure configure the Add-on properly.
Otherwise, try to contact the Add-on developers if support is provided (you can check that on Splunkbase page for the Add-on)
hi @VatsalJagani - I have tried testing the inputs multiple times and it does bring me the data but nothing more than 500 records from jira tickets.
The app is developer supported:
https://splunkbase.splunk.com/app/6168
Thanks
@sweetie - I would suggest contacting the developer or creating an issue on the Github repo - https://splunkbase.splunk.com/app/6168
hi, As a workaround for now- I have further split my data into labels such that the JQL is like
project IN (xyx) AND labels IN (abc)
Though had to create multiple inputs but this has narrowed down my results hence pulling the required data.
Thanks