<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ResponseNotReady in Security</title>
    <link>https://community.splunk.com/t5/Security/ResponseNotReady/m-p/30491#M1007</link>
    <description>&lt;P&gt;Hello Supporter,  &lt;/P&gt;

&lt;P&gt;we are going to use SPLUNK. We have installed it on a machine and testet in our office and it worked fine. On weekend the server was installed in our cage in the datacenter. Now the server frontend won't speak with us. It throws the error &lt;CODE&gt;500 Internal Server Error (ResponseNotReady)&lt;/CODE&gt;. In our office everything worked fine.&lt;/P&gt;

&lt;P&gt;I've checked the &lt;CODE&gt;web_access.log&lt;/CODE&gt;, &lt;CODE&gt;web_service.log&lt;/CODE&gt;, &lt;CODE&gt;splunkd_access.log&lt;/CODE&gt; and the &lt;CODE&gt;splunkd.log&lt;/CODE&gt;, everything is nice in there and no errors are detectable. I've also checked it via TCP Dump, but the HTTP communication seems to be fine.&lt;/P&gt;

&lt;P&gt;I'm using an SSL VPN connection to connect to our datacenter.&lt;/P&gt;

&lt;P&gt;The distribution we use is a Debian (&lt;CODE&gt;Kernel 2.6.32&lt;/CODE&gt;) and Splunk 5 (&lt;CODE&gt;5.0-140868-linux-x86_64&lt;/CODE&gt;).&lt;BR /&gt;
All i've found out is that this should be an error with phyton, but i'm not a programmer. Can you please give me a hint on what I should look? Any suggestions?&lt;BR /&gt;
I've also done a fresh install because I do not really know if an ip change will cause trouble.&lt;BR /&gt;
Let me know if you need more informations or maybe a logfile.&lt;/P&gt;

&lt;P&gt;Thanks in advance  &lt;/P&gt;

&lt;P&gt;Peter&lt;/P&gt;

&lt;P&gt;EDIT: The event is thrown in &lt;CODE&gt;httplib.py on line 1018&lt;/CODE&gt;.&lt;/P&gt;</description>
    <pubDate>Mon, 12 Nov 2012 10:34:01 GMT</pubDate>
    <dc:creator>peterboett</dc:creator>
    <dc:date>2012-11-12T10:34:01Z</dc:date>
    <item>
      <title>ResponseNotReady</title>
      <link>https://community.splunk.com/t5/Security/ResponseNotReady/m-p/30491#M1007</link>
      <description>&lt;P&gt;Hello Supporter,  &lt;/P&gt;

&lt;P&gt;we are going to use SPLUNK. We have installed it on a machine and testet in our office and it worked fine. On weekend the server was installed in our cage in the datacenter. Now the server frontend won't speak with us. It throws the error &lt;CODE&gt;500 Internal Server Error (ResponseNotReady)&lt;/CODE&gt;. In our office everything worked fine.&lt;/P&gt;

&lt;P&gt;I've checked the &lt;CODE&gt;web_access.log&lt;/CODE&gt;, &lt;CODE&gt;web_service.log&lt;/CODE&gt;, &lt;CODE&gt;splunkd_access.log&lt;/CODE&gt; and the &lt;CODE&gt;splunkd.log&lt;/CODE&gt;, everything is nice in there and no errors are detectable. I've also checked it via TCP Dump, but the HTTP communication seems to be fine.&lt;/P&gt;

&lt;P&gt;I'm using an SSL VPN connection to connect to our datacenter.&lt;/P&gt;

&lt;P&gt;The distribution we use is a Debian (&lt;CODE&gt;Kernel 2.6.32&lt;/CODE&gt;) and Splunk 5 (&lt;CODE&gt;5.0-140868-linux-x86_64&lt;/CODE&gt;).&lt;BR /&gt;
All i've found out is that this should be an error with phyton, but i'm not a programmer. Can you please give me a hint on what I should look? Any suggestions?&lt;BR /&gt;
I've also done a fresh install because I do not really know if an ip change will cause trouble.&lt;BR /&gt;
Let me know if you need more informations or maybe a logfile.&lt;/P&gt;

&lt;P&gt;Thanks in advance  &lt;/P&gt;

&lt;P&gt;Peter&lt;/P&gt;

&lt;P&gt;EDIT: The event is thrown in &lt;CODE&gt;httplib.py on line 1018&lt;/CODE&gt;.&lt;/P&gt;</description>
      <pubDate>Mon, 12 Nov 2012 10:34:01 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/ResponseNotReady/m-p/30491#M1007</guid>
      <dc:creator>peterboett</dc:creator>
      <dc:date>2012-11-12T10:34:01Z</dc:date>
    </item>
    <item>
      <title>Re: ResponseNotReady</title>
      <link>https://community.splunk.com/t5/Security/ResponseNotReady/m-p/30492#M1008</link>
      <description>&lt;P&gt;This error appears on Windows sometimes due to Splunk being unable to talk to itself. It's a known issue with Windows, see:&lt;/P&gt;

&lt;P&gt;&lt;A href="http://docs.splunk.com/Documentation/Splunk/latest/ReleaseNotes/WorkaroundfornetworkaccessibilityissuesonSplunkWindowssystems"&gt;http://docs.splunk.com/Documentation/Splunk/latest/ReleaseNotes/WorkaroundfornetworkaccessibilityissuesonSplunkWindowssystems&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;I haven't heard of local ephemeral port exhaustion on linux systems though. The splunkd.log should contain a python stack trace containing more information related to the error.&lt;/P&gt;</description>
      <pubDate>Mon, 10 Mar 2014 23:06:36 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/ResponseNotReady/m-p/30492#M1008</guid>
      <dc:creator>Jason</dc:creator>
      <dc:date>2014-03-10T23:06:36Z</dc:date>
    </item>
  </channel>
</rss>

