Splunk Enterprise

DB connect page not loading

Strangertinz
Path Finder

Hi community, 

 

I am trying to connect to the DB connect app and i am constantly redirected to

http://$HOST/en-US/app/splunk_app_db_connect/ftr


What is the FTR and how can I get rid of this error or force a redirection to a DB app that will work. 

I tried deleting the app folder in the ($SPLUNK_HOME/etc/apps) directory and reinstalling but still getting the same error. Any assistance here will be greatly appreciated. 

 

 

0 Karma

fhernandezs
Observer

Hi guys,

I had the same issue with Splunk 9.3.0 and DB Connect 3.8.x. To solve this just has to clear the cashe of the browser.

Regards,

0 Karma

_pravin
Communicator

Hi @Strangertinz ,

 

I tried the same steps done by you, going back and forth versions and had the same issues as mentioned. I think it's a bug in the splunk db connect app.

 

Thanks,

Pravin

0 Karma

Strangertinz
Path Finder

Hi @_pravin

you can correct the issue by going to latest version of db_connect assuming you are running 9.2.x splunk. 

I am still dealing with the issue of the latest version not seeing data send from my db_connect.  Has this ever happened to you and how did you resolve it? I cant find any error log to point to the main issue 

0 Karma

_pravin
Communicator

I have not had the issue where I can't see data @Strangertinz 

 

Pravin

0 Karma

_pravin
Communicator

Thanks @isoutamo , that's pretty much what I am looking.

I don't know if that a version issue/bug but only difference I can find between the working install and non working install is the linux kernel that I am use.

kernel versionDB connect version - Not Working DB connect version - working
3.10.03.17.0 / 3.18.0 3.16.0
5.14.0-3.17.0 / 3.18.0 /3.16.0

 

Sometimes, I also have the issue where the app gets launched but doesn't the configuration page remains empty or doesn't move forward past a point.

Is this a common issue with Splunk DB Connect as well ?

 

Regards,

Pravin

0 Karma

isoutamo
SplunkTrust
SplunkTrust
If you are using Splunk 9.x then linux kernel 3.1 support has removed https://docs.splunk.com/Documentation/Splunk/9.3.1/ReleaseNotes/Deprecatedfeatures
0 Karma

_pravin
Communicator

I am using Splunk 9.2.2

Sorry that I forgot to mention the version of Splunk in the earlier version.

 

0 Karma

isoutamo
SplunkTrust
SplunkTrust
Are you using the same Java version on both environments?
0 Karma

_pravin
Communicator

I still have the same issue. I tried with version 3.17.0 / 3.18.0 had the same issue. I am using Splunk 9.2.2 and DB connect 3.16.0 worked fine, is this a version issue ?

0 Karma

Strangertinz
Path Finder

Disregard, issue resolved

0 Karma

isoutamo
SplunkTrust
SplunkTrust
Please tell the solution if you are marking this as a solved! In that way other can see it and use a same solution too.
0 Karma

Strangertinz
Path Finder

It was just a versioning issue. Had to install the latest db connect app and that solved my issue. 

However I am facing the issue again as I tried to go back to an older version with a splunk db connect and facing the same issue while on splunk 9.3.1

0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...