<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Why is Splunk enterprise webserver is stuck? in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/Why-is-Splunk-enterprise-webserver-is-stuck/m-p/494063#M99889</link>
    <description>&lt;P&gt;Hello, Vchennuri, &lt;/P&gt;

&lt;P&gt;Is this server in Search Head Cluster? &lt;BR /&gt;
I had a similar problem and the cause was the &lt;STRONG&gt;Configuration Bundle&lt;/STRONG&gt;.&lt;/P&gt;</description>
    <pubDate>Tue, 08 Oct 2019 18:42:36 GMT</pubDate>
    <dc:creator>marcus_santos_s</dc:creator>
    <dc:date>2019-10-08T18:42:36Z</dc:date>
    <item>
      <title>Why is Splunk enterprise webserver is stuck?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Why-is-Splunk-enterprise-webserver-is-stuck/m-p/494061#M99887</link>
      <description>&lt;P&gt;My splunk enterprise is stuck below and not starting.&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;Splunk&amp;gt; 4TW

Checking prerequisites...
        Checking http port [8000]: open
        Checking mgmt port [8089]: open
        Checking appserver port [127.0.0.1:8065]: open
        Checking kvstore port [8191]: open
        Checking configuration... Done.
        Checking critical directories...        Done
        Checking indexes...
                Validated: _audit _internal _introspection _telemetry _thefishbucket collectd history mail main secure summary unix_summary
        Done
        Checking filesystem compatibility...  Done
        Checking conf files for problems...
        Done
        Checking default conf files for edits...
        Validating installed files against hashes from '/opt/splunk/splunk-7.3.0-657388c7a488-linux-2.6-x86_64-manifest'
File '/opt/splunk/etc/system/default/alert_actions.conf' changed.
        Problems were found, please review your files and move customizations to local
All preliminary checks passed.

Starting splunk server daemon (splunkd)...
Done
 [  OK  ]

Waiting for web server at &lt;A href="https://127.0.0.1:8000" target="test_blank"&gt;https://127.0.0.1:8000&lt;/A&gt; to be available...
&lt;/CODE&gt;&lt;/PRE&gt;

&lt;P&gt;Can someone help please?&lt;/P&gt;</description>
      <pubDate>Tue, 08 Oct 2019 17:15:16 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Why-is-Splunk-enterprise-webserver-is-stuck/m-p/494061#M99887</guid>
      <dc:creator>vchennuri</dc:creator>
      <dc:date>2019-10-08T17:15:16Z</dc:date>
    </item>
    <item>
      <title>Re: Why is Splunk enterprise webserver is stuck?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Why-is-Splunk-enterprise-webserver-is-stuck/m-p/494062#M99888</link>
      <description>&lt;P&gt;Rephrasing my question&lt;BR /&gt;
My splunk enterprise webserver is stuck as below and Not starting.&lt;/P&gt;</description>
      <pubDate>Tue, 08 Oct 2019 17:45:16 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Why-is-Splunk-enterprise-webserver-is-stuck/m-p/494062#M99888</guid>
      <dc:creator>vchennuri</dc:creator>
      <dc:date>2019-10-08T17:45:16Z</dc:date>
    </item>
    <item>
      <title>Re: Why is Splunk enterprise webserver is stuck?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Why-is-Splunk-enterprise-webserver-is-stuck/m-p/494063#M99889</link>
      <description>&lt;P&gt;Hello, Vchennuri, &lt;/P&gt;

&lt;P&gt;Is this server in Search Head Cluster? &lt;BR /&gt;
I had a similar problem and the cause was the &lt;STRONG&gt;Configuration Bundle&lt;/STRONG&gt;.&lt;/P&gt;</description>
      <pubDate>Tue, 08 Oct 2019 18:42:36 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Why-is-Splunk-enterprise-webserver-is-stuck/m-p/494063#M99889</guid>
      <dc:creator>marcus_santos_s</dc:creator>
      <dc:date>2019-10-08T18:42:36Z</dc:date>
    </item>
    <item>
      <title>Re: Why is Splunk enterprise webserver is stuck?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Why-is-Splunk-enterprise-webserver-is-stuck/m-p/494064#M99890</link>
      <description>&lt;P&gt;Check if there is any error message at splunkd.log/web_service.log at $SPLUNK_HOME/var/log/splunk. &lt;BR /&gt;
I had similar issues in the past and I am not able to identify the root cause even doing some troubleshooting on the log files I mentioned. &lt;/P&gt;

&lt;P&gt;To fix the web server issues in my case, I have to reinstall Splunk using the same version already previously installed and it had worked. Try to revert the previous changes you had deployed to check it can be the root cause. &lt;/P&gt;

&lt;P&gt;Please &lt;STRONG&gt;run a backup first&lt;/STRONG&gt; at the entire &lt;STRONG&gt;/etc&lt;/STRONG&gt; folder before you deploy any changes, just to make sure you are able to recover all the configuration and apps.&lt;/P&gt;</description>
      <pubDate>Wed, 30 Sep 2020 02:30:10 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Why-is-Splunk-enterprise-webserver-is-stuck/m-p/494064#M99890</guid>
      <dc:creator>ivanreis</dc:creator>
      <dc:date>2020-09-30T02:30:10Z</dc:date>
    </item>
  </channel>
</rss>

