Getting Data In

Splunk Forwarder unable to read inputs.conf file

Splunker8
Explorer

05-29-2023 06:00:46.836 +0000 WARN ConfigWatcher [249660 SplunkConfigChangeWatcherThread] - Failed to read file to checksum in init(), path=/opt/splunkforwarder/etc/apps/app1/local/inputs.conf

05-29-2023 06:00:46.836 +0000 ERROR ConfigWatcher [249660 SplunkConfigChangeWatcherThread] - initialization failed for path=/opt/splunkforwarder/etc/apps/app1/local/inputs.conf

 

 

Splunk Forwarder unable to read inputs.conf file. Seeing above 2 issues in splunkd.log

Labels (1)
0 Karma
1 Solution

richgalloway
SplunkTrust
SplunkTrust

Check the permissions on the file.

---
If this reply helps you, Karma would be appreciated.

View solution in original post

richgalloway
SplunkTrust
SplunkTrust

Check the permissions on the file.

---
If this reply helps you, Karma would be appreciated.
Get Updates on the Splunk Community!

Splunk and TLS: It doesn't have to be too hard

Overview Creating a TLS cert for Splunk usage is pretty much standard openssl.  To make life better, use an ...

Faster Insights with AI, Streamlined Cloud-Native Operations, and More New Lantern ...

Splunk Lantern is a Splunk customer success center that provides practical guidance from Splunk experts on key ...

Splunk Enterprise Security: Your Command Center for PCI DSS Compliance

Every security professional knows the drill. The PCI DSS audit is approaching, and suddenly everyone's asking ...