-
Bug
-
Resolution: Not a Bug
-
Critical
-
None
-
Logging 6.0.0
-
False
-
None
-
False
-
NEW
-
OBSDA-550 - Updated APIs for Logging 6.0
-
NEW
-
Release Note Not Required
-
-
-
Log Collection - Sprint 257
Description of problem:
- clusterlogforwarders.observability.openshift.io "to-splunk" was not valid:
- * spec.outputs[0].splunk.index: Invalid value: ".log_type": spec.outputs[0].splunk.index in body should match '^(([a-zA-Z0-9-_.\/])({(\.[a-zA-Z0-9_]|\."[^"]")((||)(\.[a-zA-Z0-9_]|\.?"[^"]"))||"[^"]"}))*$'
#
apiVersion: observability.openshift.io/v1 kind: ClusterLogForwarder metadata: creationTimestamp: "2024-07-24T13:15:28Z" generation: 3 name: to-splunk namespace: e2e-test-vector-splunk-lvjbh resourceVersion: "306985" uid: 6187f56c-b064-4f30-815b-88195b04d148 spec: managementState: Managed outputs: - name: splunk-aosqe splunk: authentication: token: key: hecToken secretName: to-splunk-secret-68303 index: '{{.log_type}}' url: http://splunk-http-0.e2e-test-vector-splunk-lvjbh.svc:8088 type: splunk
How reproducible:
Always
Steps to Reproduce:
- use template syntax as splunk.index
- ...
Actual results:
clusterlogforwarders.observability.openshift.io "to-splunk" was not valid:
- * spec.outputs[0].splunk.index: Invalid value: ".log_type": spec.outputs[0].splunk.index in body should match '^(([a-zA-Z0-9-_.\/])({(\.[a-zA-Z0-9_]|\."[^"]")((||)(\.[a-zA-Z0-9_]|\.?"[^"]"))||"[^"]"}))*$'
#
Expected results:
index support template syntax to allow dynamic per-event values.