We use Splunk free with the splunk addon for opc. We can already see the OPC UA data of our server, but this does not write any data to the index. I create a HEC and a Metric index. 2020-09-03 20:38:17,848 ERROR 10328 - [Worker-1] Write events through HEC failed: Traceback (most recent call last): File "C:\Program Files\Splunk\etc\apps\Splunk_TA_opc\bin\solnlib\modular_input\event_writer.py", line 353, in write_events headers=self.headers) File "C:\Program Files\Splunk\etc\apps\Splunk_TA_opc\bin\solnlib\packages\splunklib\binding.py", line 287, in wrapper return request_fun(self, *args, **kwargs) File "C:\Program Files\Splunk\etc\apps\Splunk_TA_opc\bin\solnlib\packages\splunklib\binding.py", line 69, in new_f val = f(*args, **kwargs) File "C:\Program Files\Splunk\etc\apps\Splunk_TA_opc\bin\solnlib\packages\splunklib\binding.py", line 738, in post response = self.http.post(path, all_headers, **query) File "C:\Program Files\Splunk\etc\apps\Splunk_TA_opc\bin\solnlib\packages\splunklib\binding.py", line 1201, in post return self.request(url, message) File "C:\Program Files\Splunk\etc\apps\Splunk_TA_opc\bin\solnlib\packages\splunklib\binding.py", line 1221, in request raise HTTPError(response) HTTPError: HTTP 400 Bad Request -- {"text":"Incorrect index","code":7,"invalid-event-number":1} . Ausblenden host = SPLUNK-Server source = C:\Program Files\Splunk\var\log\splunk\splunk_ta_opc_celery.log sourcetype = splunk_ta_opc_celery-2
... View more