2018-03-27 18:25:27,745 +0000 log_level=INFO, pid=2014, tid=MainThread, file=o365_refresh_token.py, func_name=set_up_env, code_line_no=120 | No account is available for refreshing
host = ABCDEF01 source = /opt/splunk/var/log/splunk/splunk_ta_microsoft-cloudservices_account_monitoring.log sourcetype = ms:o365:jobinsight:account
Continuos events:
3/27/18
2:25:59.090 PM
2018-03-27 18:25:59,090 +0000 log_level=INFO, pid=5259, tid=MainThread, file=ta_mod_input.py, func_name=main, code_line_no=200 | End Microsoft Cloudservices Azure Audit task
host = ABCDEF01 source = /opt/splunk/var/log/splunk/splunk_ta_microsoft-cloudservices_azure_audit.log sourcetype = mscs:azure:audit:log
3/27/18
2:25:59.089 PM
2018-03-27 18:25:59,089 +0000 log_level=INFO, pid=5259, tid=MainThread, file=ta_config.py, func_name=_generate_task_configs, code_line_no=89 | Totally generated 0 task configs
host = ABCDEF01 source = /opt/splunk/var/log/splunk/splunk_ta_microsoft-cloudservices_azure_audit.log sourcetype = mscs:azure:audit:log
When I look at the inputs (settings/data inputs) they show none for the app. When try to add one it shows this error:
Encountered the following error while trying to save: Splunkd daemon is not responding: ("Error connecting to /servicesNS/admin/Splunk_TA_microsoft-cloudservices/data/inputs/ms_o365_management: ('The read operation timed out',)",)
... View more