Splunk Enterprise

Jamf Pro logs integration with Splunk - Not getting logs

bsanjeeva
Explorer

Hi Splunkers,

I am integrating Jamf pro logs to splunk using Jamf Pro Add-on for Splunk (https://splunkbase.splunk.com/app/4729/).

I have defined the inputs as per the documentation. However, I am not getting logs on indexer. I can see below errors in splunkd.log and jamf_pro_addon_for_splunk_jamfcomputers.log. 

Any suggestions regarding this will be greatly appreciated.

Thanks,

Error 1:

2022-01-28 13:44:58,590 ERROR pid=10751 tid=MainThread file=base_modinput.py:log_error:309 | Get error when collecting events.

Error 2:

Screen Shot 2022-01-28 at 4.38.03 PM.png

Labels (1)
Tags (1)
0 Karma

SinghK
Builder

have you checked the UID and PWD are correct on and the have the correct permissions. As this looks more like permissions or incorrect creds issue.

Tags (1)
0 Karma
Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...