<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic How to fix the Splunk enterprise bundle validation error in indexer nodes? in Splunk Enterprise</title>
    <link>https://community.splunk.com/t5/Splunk-Enterprise/How-to-fix-the-Splunk-enterprise-bundle-validation-error-in/m-p/618818#M14343</link>
    <description>&lt;P&gt;Recently i upgraded our splunk enterprise version from 9.0.0 to 9.0.1 in all our master , search head &amp;amp; indexer nodes. The order we updated is indexer - search head - master.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Once the upgrade was successfully done we weren't able to bring up the splunk cluster in which indexer node is keep on failing with the below mentioned error:&lt;/P&gt;
&lt;PRE&gt;10-27-2022 23:02:27.083 +0000 ERROR CMSlave [91467 MainThread] - event=getActiveBundle failed with err="invalid active_bundle_id=.  Check the cluster manager for bundle validation/errors or other issues." even after multiple attempts, Exiting..
10-27-2022 23:02:27.106 +0000 ERROR loader [91467 MainThread] - Failed to download bundle from the cluster manager, err="invalid active_bundle_id=.  Check the cluster manager for bundle validation/errors or other issues.", Won't start splunkd.&amp;nbsp;&lt;/PRE&gt;
&lt;P&gt;There are no errors in master &amp;amp; search head node's logs. Please help me to fix this bundle validation error.&lt;/P&gt;</description>
    <pubDate>Mon, 31 Oct 2022 09:09:00 GMT</pubDate>
    <dc:creator>Vaidesh</dc:creator>
    <dc:date>2022-10-31T09:09:00Z</dc:date>
    <item>
      <title>How to fix the Splunk enterprise bundle validation error in indexer nodes?</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/How-to-fix-the-Splunk-enterprise-bundle-validation-error-in/m-p/618818#M14343</link>
      <description>&lt;P&gt;Recently i upgraded our splunk enterprise version from 9.0.0 to 9.0.1 in all our master , search head &amp;amp; indexer nodes. The order we updated is indexer - search head - master.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Once the upgrade was successfully done we weren't able to bring up the splunk cluster in which indexer node is keep on failing with the below mentioned error:&lt;/P&gt;
&lt;PRE&gt;10-27-2022 23:02:27.083 +0000 ERROR CMSlave [91467 MainThread] - event=getActiveBundle failed with err="invalid active_bundle_id=.  Check the cluster manager for bundle validation/errors or other issues." even after multiple attempts, Exiting..
10-27-2022 23:02:27.106 +0000 ERROR loader [91467 MainThread] - Failed to download bundle from the cluster manager, err="invalid active_bundle_id=.  Check the cluster manager for bundle validation/errors or other issues.", Won't start splunkd.&amp;nbsp;&lt;/PRE&gt;
&lt;P&gt;There are no errors in master &amp;amp; search head node's logs. Please help me to fix this bundle validation error.&lt;/P&gt;</description>
      <pubDate>Mon, 31 Oct 2022 09:09:00 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/How-to-fix-the-Splunk-enterprise-bundle-validation-error-in/m-p/618818#M14343</guid>
      <dc:creator>Vaidesh</dc:creator>
      <dc:date>2022-10-31T09:09:00Z</dc:date>
    </item>
    <item>
      <title>Re: The Splunk enterprise bundle validation error in indexer nodes</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/How-to-fix-the-Splunk-enterprise-bundle-validation-error-in/m-p/618850#M14355</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;unfortunately you have had wrong update order and quite probably that has generated this issue. The correct order &amp;nbsp;MN, SH and latest indexers. To avoid more issues you should contact to splunk support if they have information how to fix this with more issues.&lt;/P&gt;&lt;P&gt;r. Ismo&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 30 Oct 2022 18:59:39 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/How-to-fix-the-Splunk-enterprise-bundle-validation-error-in/m-p/618850#M14355</guid>
      <dc:creator>isoutamo</dc:creator>
      <dc:date>2022-10-30T18:59:39Z</dc:date>
    </item>
  </channel>
</rss>

