Security

Is it possible to get diagnostics of the login process on Splunk Mobile App on iOS?

jbarlow_splunk
Splunk Employee
Splunk Employee

Is it possible to get client side diagnostics to troubleshoot login issues when using the Splunk Mobile app on iOS

0 Karma
1 Solution

jbarlow_splunk
Splunk Employee
Splunk Employee

On the 2.4 release of app for iOs, it is possible to generate a client side log file
which can be used to send to splunk support or potentially troubleshoot yourself..

The format of the log is not in plain text. It is raw NS-Logger format (this may change in future release)
If you own a Mac, it can be opened using a NS-Logger Reader

How to generate :

If you encounter a login error,
Click > Contact Us > Send Error Report
a compose email (whatever you default email is on device)
and that contains an attachment (r SplunkMobile1.rawnslogger)
Send that to a support case…or yourself to troubleshoot and save attachment (if you have access to a Mac Only)

If sending the log to Splunk Support for troubleshooting, please be aware that the log will contain
Machine names/IP addresses of the splunk servers / Reverse proxy you are trying to connect to .
It does not contain user names/passwords

To view the log (Mac)
install ..as NS-Reader such as https://github.com/fpillet/NSLogger/releases
Open the SplunkMobile1.rawnslogger file

alt text

View solution in original post

jbarlow_splunk
Splunk Employee
Splunk Employee

On the 2.4 release of app for iOs, it is possible to generate a client side log file
which can be used to send to splunk support or potentially troubleshoot yourself..

The format of the log is not in plain text. It is raw NS-Logger format (this may change in future release)
If you own a Mac, it can be opened using a NS-Logger Reader

How to generate :

If you encounter a login error,
Click > Contact Us > Send Error Report
a compose email (whatever you default email is on device)
and that contains an attachment (r SplunkMobile1.rawnslogger)
Send that to a support case…or yourself to troubleshoot and save attachment (if you have access to a Mac Only)

If sending the log to Splunk Support for troubleshooting, please be aware that the log will contain
Machine names/IP addresses of the splunk servers / Reverse proxy you are trying to connect to .
It does not contain user names/passwords

To view the log (Mac)
install ..as NS-Reader such as https://github.com/fpillet/NSLogger/releases
Open the SplunkMobile1.rawnslogger file

alt text

Get Updates on the Splunk Community!

Get Your Exclusive Splunk Certified Cybersecurity Defense Engineer at Splunk .conf24 ...

We’re excited to announce a new Splunk certification exam being released at .conf24! If you’re headed to Vegas ...

Share Your Ideas & Meet the Lantern team at .Conf! Plus All of This Month’s New ...

Splunk Lantern is Splunk’s customer success center that provides advice from Splunk experts on valuable data ...

Combine Multiline Logs into a Single Event with SOCK: a Step-by-Step Guide for ...

Combine multiline logs into a single event with SOCK - a step-by-step guide for newbies Olga Malita The ...