<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Issue after upgrade from HF splunk 9.2.1 to 9.2.2 in Splunk Enterprise</title>
    <link>https://community.splunk.com/t5/Splunk-Enterprise/Issue-after-upgrade-from-HF-splunk-9-2-1-to-9-2-2/m-p/701022#M20414</link>
    <description>&lt;P&gt;Issue after upgrade from HF splunk 9.2.1 to 9.2.2.&lt;BR /&gt;OS Running on Redhat 8.10 latest kernel version&lt;/P&gt;&lt;P&gt;Tried to change give permissions to splunk folder.&lt;BR /&gt;Tried to set to permissive mode the sestatus.&lt;/P&gt;&lt;P&gt;[afmpcc-prabdev@sgmtihfsv001 splunk]$ sudo -u splunk /mnt/splunk/splunk/bin/splunk start --accept-license --answer-yes&lt;BR /&gt;Error calling execve(): Permission denied&lt;BR /&gt;Error launching systemctl show command: Permission denied&lt;/P&gt;&lt;P&gt;This appears to be an upgrade of Splunk.&lt;BR /&gt;--------------------------------------------------------------------------------)&lt;/P&gt;&lt;P&gt;Splunk has detected an older version of Splunk installed on this machine. To&lt;BR /&gt;finish upgrading to the new version, Splunk's installer will automatically&lt;BR /&gt;update and alter your current configuration files. Deprecated configuration&lt;BR /&gt;files will be renamed with a.deprecated extension.&lt;/P&gt;&lt;P&gt;You can choose to preview the changes that will be made to your configuration&lt;BR /&gt;files before proceeding with the migration and upgrade:&lt;/P&gt;&lt;P&gt;If you want to migrate and upgrade without previewing the changes that will be&lt;BR /&gt;made to your existing configuration files, choose 'y'.&lt;BR /&gt;If you want to see what changes will be made before you proceed with the&lt;BR /&gt;upgrade, choose 'n'.&lt;/P&gt;&lt;P&gt;Perform migration and upgrade without previewing configuration changes? [y/n] y&lt;BR /&gt;Can't run "btool server list clustering --no-log": Permission denied&lt;BR /&gt;[afmpcc-prabdev@sgmtihfsv001 splunk]$[afmpcc-prabdev@sgmtihfsv001 splunk]$ sudo -u splunk /mnt/splunk/splunk/bin/splunk btool server list clustering --no-log&lt;BR /&gt;execve: Permission denied&lt;BR /&gt;while running command /mnt/splunk/splunk/bin/btool&lt;BR /&gt;[afmpcc-prabdev@sgmtihfsv001 splunk]$&lt;/P&gt;</description>
    <pubDate>Fri, 04 Oct 2024 16:06:33 GMT</pubDate>
    <dc:creator>Xander13</dc:creator>
    <dc:date>2024-10-04T16:06:33Z</dc:date>
    <item>
      <title>Issue after upgrade from HF splunk 9.2.1 to 9.2.2</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/Issue-after-upgrade-from-HF-splunk-9-2-1-to-9-2-2/m-p/701022#M20414</link>
      <description>&lt;P&gt;Issue after upgrade from HF splunk 9.2.1 to 9.2.2.&lt;BR /&gt;OS Running on Redhat 8.10 latest kernel version&lt;/P&gt;&lt;P&gt;Tried to change give permissions to splunk folder.&lt;BR /&gt;Tried to set to permissive mode the sestatus.&lt;/P&gt;&lt;P&gt;[afmpcc-prabdev@sgmtihfsv001 splunk]$ sudo -u splunk /mnt/splunk/splunk/bin/splunk start --accept-license --answer-yes&lt;BR /&gt;Error calling execve(): Permission denied&lt;BR /&gt;Error launching systemctl show command: Permission denied&lt;/P&gt;&lt;P&gt;This appears to be an upgrade of Splunk.&lt;BR /&gt;--------------------------------------------------------------------------------)&lt;/P&gt;&lt;P&gt;Splunk has detected an older version of Splunk installed on this machine. To&lt;BR /&gt;finish upgrading to the new version, Splunk's installer will automatically&lt;BR /&gt;update and alter your current configuration files. Deprecated configuration&lt;BR /&gt;files will be renamed with a.deprecated extension.&lt;/P&gt;&lt;P&gt;You can choose to preview the changes that will be made to your configuration&lt;BR /&gt;files before proceeding with the migration and upgrade:&lt;/P&gt;&lt;P&gt;If you want to migrate and upgrade without previewing the changes that will be&lt;BR /&gt;made to your existing configuration files, choose 'y'.&lt;BR /&gt;If you want to see what changes will be made before you proceed with the&lt;BR /&gt;upgrade, choose 'n'.&lt;/P&gt;&lt;P&gt;Perform migration and upgrade without previewing configuration changes? [y/n] y&lt;BR /&gt;Can't run "btool server list clustering --no-log": Permission denied&lt;BR /&gt;[afmpcc-prabdev@sgmtihfsv001 splunk]$[afmpcc-prabdev@sgmtihfsv001 splunk]$ sudo -u splunk /mnt/splunk/splunk/bin/splunk btool server list clustering --no-log&lt;BR /&gt;execve: Permission denied&lt;BR /&gt;while running command /mnt/splunk/splunk/bin/btool&lt;BR /&gt;[afmpcc-prabdev@sgmtihfsv001 splunk]$&lt;/P&gt;</description>
      <pubDate>Fri, 04 Oct 2024 16:06:33 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/Issue-after-upgrade-from-HF-splunk-9-2-1-to-9-2-2/m-p/701022#M20414</guid>
      <dc:creator>Xander13</dc:creator>
      <dc:date>2024-10-04T16:06:33Z</dc:date>
    </item>
    <item>
      <title>Re: Issue after upgrade from HF splunk 9.2.1 to 9.2.2</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/Issue-after-upgrade-from-HF-splunk-9-2-1-to-9-2-2/m-p/701098#M20419</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/272902"&gt;@Xander13&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;the error -&amp;nbsp;&lt;SPAN&gt;Error calling execve(): Permission denied&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;was discussed in this post. could you pls check this once, thanks.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://community.splunk.com/t5/Getting-Data-In/When-trying-to-start-Splunk-I-m-getting-an-quot-execve/m-p/119749" target="_blank"&gt;https://community.splunk.com/t5/Getting-Data-In/When-trying-to-start-Splunk-I-m-getting-an-quot-execve/m-p/119749&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 06 Oct 2024 05:36:06 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/Issue-after-upgrade-from-HF-splunk-9-2-1-to-9-2-2/m-p/701098#M20419</guid>
      <dc:creator>inventsekar</dc:creator>
      <dc:date>2024-10-06T05:36:06Z</dc:date>
    </item>
    <item>
      <title>Re: Issue after upgrade from HF splunk 9.2.1 to 9.2.2</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/Issue-after-upgrade-from-HF-splunk-9-2-1-to-9-2-2/m-p/701100#M20420</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/272902"&gt;@Xander13&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;&lt;P&gt;you're using the splunk user to run the upgrade and probably there are some files owned by root.&lt;/P&gt;&lt;P&gt;You have two choices:&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;run the upgrade by root,&lt;/LI&gt;&lt;LI&gt;run by root the command "chown -R splunk:splunk /opt/splunk" and then run the upgrade by splunk user&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;Ciao.&lt;/P&gt;&lt;P&gt;Giuseppe&lt;/P&gt;</description>
      <pubDate>Sun, 06 Oct 2024 08:28:28 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/Issue-after-upgrade-from-HF-splunk-9-2-1-to-9-2-2/m-p/701100#M20420</guid>
      <dc:creator>gcusello</dc:creator>
      <dc:date>2024-10-06T08:28:28Z</dc:date>
    </item>
    <item>
      <title>Re: Issue after upgrade from HF splunk 9.2.1 to 9.2.2</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/Issue-after-upgrade-from-HF-splunk-9-2-1-to-9-2-2/m-p/701101#M20421</link>
      <description>&lt;P&gt;Thank you guys. Issue was resolved. There is NOEXEC restriction configured on the account in SUDOERS file.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 06 Oct 2024 09:57:14 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/Issue-after-upgrade-from-HF-splunk-9-2-1-to-9-2-2/m-p/701101#M20421</guid>
      <dc:creator>Xander13</dc:creator>
      <dc:date>2024-10-06T09:57:14Z</dc:date>
    </item>
    <item>
      <title>Re: Issue after upgrade from HF splunk 9.2.1 to 9.2.2</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/Issue-after-upgrade-from-HF-splunk-9-2-1-to-9-2-2/m-p/701102#M20422</link>
      <description>&lt;P&gt;hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/272902"&gt;@Xander13&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;good for you, see next time!&lt;/P&gt;&lt;P&gt;Ciao and happy splunking&lt;/P&gt;&lt;P&gt;Giuseppe&lt;/P&gt;&lt;P&gt;P.S.: Karma Points are appreciated by all the contributors &lt;span class="lia-unicode-emoji" title=":winking_face:"&gt;😉&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 06 Oct 2024 09:58:29 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/Issue-after-upgrade-from-HF-splunk-9-2-1-to-9-2-2/m-p/701102#M20422</guid>
      <dc:creator>gcusello</dc:creator>
      <dc:date>2024-10-06T09:58:29Z</dc:date>
    </item>
  </channel>
</rss>

