Splunk AppDynamics

analytics agent error

CommunityUser
Splunk Employee
Splunk Employee

HI Team,

Getting below error in analytics agent logs . Issue im facing is while navigation to analytics 

[2018-08-20T11:08:45,088+05:30] [ERROR] [file:poll:pipeline-poller-thread-0] [c.a.a.a.p.d.LogSourceJobFileListener] Error occurred while processing file [/opt/setup/machine-agent/monitors/analytics-agent/conf/job/sample-stock-quotes-csv.job]
com.appdynamics.analytics.client.common.exceptions.UnauthorizedRestException: Status code: [401], Message: HTTP 401 Unauthorized
at com.appdynamics.analytics.client.common.exceptions.RestExceptionFactory.makeException(RestExceptionFactory.java:44)
at com.appdynamics.analytics.client.common.RestClientUtils.validateResponse(RestClientUtils.java:260)
at com.appdynamics.analytics.client.common.RestClientUtils.resolve(RestClientUtils.java:84)
at com.appdynamics.analytics.client.common.GenericHttpRequestBuilder.execute(GenericHttpRequestBuilder.java:197)
at com.appdynamics.analytics.shared.rest.client.eventservice.DefaultExtractedFieldsClient.getExtractedFields(DefaultExtractedFieldsClient.java:91)
at com.appdynamics.analytics.shared.rest.client.eventservice.DefaultExtractedFieldsClient.getExtractedFields(DefaultExtractedFieldsClient.java:74)
at com.appdynamics.analytics.agent.field.ExtractedFieldsManager.getExtractedFieldPatterns(ExtractedFieldsManager.java:94)
at com.appdynamics.analytics.agent.field.ExtractedFieldsManager.getExtractedFieldPatterns(ExtractedFieldsManager.java:78)
at com.appdynamics.analytics.agent.source.LogSourceConfigurationHelper.getNonGrokPatterns(LogSourceConfigurationHelper.java:190)
at com.appdynamics.analytics.agent.source.LogSourceConfigurationHelper.convertPipelineConfigurationToTailLogSourceConfiguration(LogSourceConfigurationHelper.java:97)
at com.appdynamics.analytics.agent.source.LogSourceConfigurationHelper.convertPipelineConfigurationToLogSourceConfiguration(LogSourceConfigurationHelper.java:153)
at com.appdynamics.analytics.agent.pipeline.dynamic.LogSourceJobFileParser.parseLogSourceConfigurationFromFile(LogSourceJobFileParser.java:80)
at com.appdynamics.analytics.agent.pipeline.dynamic.LogSourceJobFileListener.upsert(LogSourceJobFileListener.java:76)
at com.appdynamics.analytics.agent.pipeline.dynamic.LogSourceJobFileListener.onFileCreate(LogSourceJobFileListener.java:51)
at org.apache.commons.io.monitor.FileAlterationObserver.doCreate(FileAlterationObserver.java:379)
at org.apache.commons.io.monitor.FileAlterationObserver.checkAndNotify(FileAlterationObserver.java:345)
at org.apache.commons.io.monitor.FileAlterationObserver.checkAndNotify(FileAlterationObserver.java:304)
at org.apache.commons.io.monitor.FileAlterationMonitor.run(FileAlterationMonitor.java:182)

Regards

Sameer

Labels (1)
0 Karma

Chitra_Lal
Contributor

Hi Sameer,

Is yours an on prem Event sevice? Was this setup working earlier or is this a new configuration? A 401 error would mean incorrect connction details being used. Can you please check the configuration properties and verify they are correctly set per the below doc link:
 
You need to verify the below properties are set properly in your analytic-agent.properties file located under the conf dir of the analytic-agent home, as per your license page details in the UI: 
http.event.name - Matches the customer name in licnese page Acocunts section
http.event.accountName - matches the global account name in license page Acocunt ssection
http.event.accessKey - matches the account access key in license page Accounts section
 
Can you please check the above details, correct them as neeed then retsrt your ANlaytics agent and see if the issue i sresolved or not. In case the issu epersists please send over the Analytics agent log file and the analytic-agent.properties file as well as a screenhsot of the Controller license UI -> Accounts tab.
 
Thank You,
Chitra

CommunityUser
Splunk Employee
Splunk Employee

We observed the following property in the controller was not set.
appdynamics.non.eum.events.use.on.premise.event.service

with above it got resolved

0 Karma

Chitra_Lal
Contributor

Hi Sameer,

Really glad to know that. Do let me know in case you have any further queries or if we can consider this resolved completely. 

Thank You,

Chitra

0 Karma
Get Updates on the Splunk Community!

Learn Splunk Insider Insights, Do More With Gen AI, & Find 20+ New Use Cases You Can ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Buttercup Games: Further Dashboarding Techniques (Part 7)

This series of blogs assumes you have already completed the Splunk Enterprise Search Tutorial as it uses the ...

Stay Connected: Your Guide to April Tech Talks, Office Hours, and Webinars!

What are Community Office Hours? Community Office Hours is an interactive 60-minute Zoom series where ...