Getting Data In

UF log error

IanSHaynes1
New Member

Getting this issue on a windows server. There's only an inputs.conf file with the following 

[monitor://L:\Logs\ApplicationLogs*.log]

sourcetype = xxx

index = yy

disabled = 0

 

1/12/2022

05:03.3

1000

ERROR

WatchedFile [7088 tailreader0] -   Bug during applyPendingMetadata, header processor does not own the indexed extractions confs.

    

1/12/2022

05:03.3

1000

ERROR

TailReader [7088 tailreader0] - Ignoring path="L:\Logs\ApplicationLogs20220112VServer.log" due to:   Bug during applyPendingMetadata, header processor does not own the indexed extractions confs.

    

 

Labels (1)
0 Karma

isoutamo
SplunkTrust
SplunkTrust

Hi

could this help you https://community.splunk.com/t5/Getting-Data-In/Error-Bug-during-applyPendingMetadata-header-process... ?

Are you sure that there are no props.conf stanzas which match your source?

r. Ismo

0 Karma

SinghK
Builder

Where did you create that input? have you added splunk TA windows addon try creating the input in the local directory in that addon.

0 Karma
Get Updates on the Splunk Community!

New Year, New Changes for Splunk Certifications

As we embrace a new year, we’re making a small but important update to the Splunk Certification ...

[Puzzles] Solve, Learn, Repeat: Unmerging HTML Tables

[Puzzles] Solve, Learn, Repeat: Unmerging HTML TablesFor a previous puzzle, I needed some sample data, and ...

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...