Skip to content

Pod annotation splunk.com/index not working #858

@wrahmann

Description

@wrahmann

What happened:
I have added the following annotation in pods and even in namespace but all the logging events are being written to default index define int he values file:

Annotations: checksum/config: d007ccc031b60011e59e6396042fc4e3e09e9d7536e851cca13c6d72a4171799
splunk.com/index: ocs-cgf-caf
splunk.com/sourcetype: sjy9-sba

What you expected to happen:
Logs should be written to the index specified in the annotation.

How to reproduce it (as minimally and precisely as possible):
I just define this config and it is not working.

Anything else we need to know?:

Environment:

  • Kubernetes version (use kubectl version):v1.23.6"
  • Ruby version (use ruby --version):
  • OS (e.g: cat /etc/os-release):SUSE
  • Splunk version: Splunk Enterprise Version: 8.2.2.1
  • Splunk Connect for Kubernetes helm chart version: SCK 1.5.3 helm 3.8.1
  • Others:

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions