Getting Data In

Resolve error: Splunk_TA_nix awk: record `HARD_DRIVES ssd2262 ...' too long?

maharshidave
Splunk Employee
Splunk Employee

Hi Team,

Using Splunk_TA_nix addon Version 8.4. While running below three scripts getting below Errors.  Customer is using Solaris 10 OS. 

Splunk_TA_nix/bin/vmstat_metric.sh" awk: record `HARD_DRIVES ssd2262 ...' too long
Splunk_TA_nix/bin/vmstat.sh" awk: record `HARD_DRIVES ssd1038 ...' too long
Splunk_TA_nix/bin/hardware.sh" awk: record `HARD_DRIVES ssd1038 ...' too long

upgraded Addon to the latest version 8.5, but after that below issue has been started and no data was ingested. 

Splunk_TA_nix/bin/uptime.sh: $(dirname /opt/splunkforwarder/etc/apps/Splunk_TA_nix/bin/uptime.sh)/common.sh: not found
Splunk_TA_nix/bin/cpu_metric.sh: $(dirname /opt/splunkforwarder/etc/apps/Splunk_TA_nix/bin/cpu_metric.sh)/common.sh: not found

So to solve, rollback Addon to version 8.4 but again awk: record `HARD_DRIVES ssd1038 error started.
Can anyone help to solve this issue. 

0 Karma

akriti
Explorer

Hi @maharshidave . Were you able to resolve this issue? I'm getting the same error as you got after upgrading to 8.5.

Splunk_TA_nix/bin/uptime.sh: $(dirname /opt/splunkforwarder/etc/apps/Splunk_TA_nix/bin/uptime.sh)/common.sh: not found
Splunk_TA_nix/bin/cpu_metric.sh: $(dirname /opt/splunkforwarder/etc/apps/Splunk_TA_nix/bin/cpu_metric.sh)/common.sh: not found

Please share your solution if you were able to resolve it.

Thanks!

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Event Series: Telemetry Pipeline Management

Balancing Scale and Spend: Gaining Control Over High-Volume Metrics in Splunk Observability Cloud As ...

Kick the Tires Before You Commit: A Hands-On Tour of the Splunk Observability Cloud ...

Evaluating an enterprise observability platform usually goes like this: fill out a form, get a free trial with ...

Deep insights, no barriers: Splunk Observability Cloud Free Edition

As software delivery cycles continue to accelerate, observability shouldn’t be a luxury — it should be a ...