Splunk Dev

Why am I unable to set up logging to debug my python script?

clorne
Communicator

Hello,

I am trying to activate the logging in order to debug my python script.
I have followed the documentation located at:
http://docs.splunk.com/Documentation/Splunk/6.3.0/AdvancedDev/ModInputsLog

SPLUNK_HOME/etc/log.cfg had already category.ExecProcessor=INFO

And the code is basically the same as the example:

set up logging suitable for splunkd consumption

logging.root
logging.root.setLevel(logging.DEBUG)
formatter = logging.Formatter('%(levelname)s %(message)s')
handler = logging.StreamHandler(stream=sys.stderr)
handler.setFormatter(formatter)
logging.root.addHandler(handler)
logging.info("LOGGING INFO HELLO.")
logging.debug("LOGGING DEBUG HELLO")

My entry is not logged in SPLUNK_HOME/var/log/splunk/splunkd.log
I have no index=_internal ExecProcessor.
I found an index names splunklogger, but it does not contain any event.

Regards

0 Karma

MuS
SplunkTrust
SplunkTrust

Hi clorne,

did you import logging in your script as stated in the example?

cheers, MuS

0 Karma

clorne
Communicator

Hello MuS,
Yes I did.
Is the logging working correctly with the procedure provided by Splunk documentation?

Regards

0 Karma

MuS
SplunkTrust
SplunkTrust

Yes, that's the way to log events from your script into splunkd.log. Here is another example http://docs.splunk.com/Documentation/Splunk/6.3.0/AdvancedDev/ModInputsExample

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

A Four-Part Event Series: Full Stack Observability For the AI Era

As AI reshapes applications, infrastructure, and the way teams operate, the traditional boundaries of ...

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Event Series: Level up your SOC: Advancing with Splunk Enterprise Security

AI has fundamentally raised the stakes for security operations, and this three-part series is your guide to ...