<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Why am I getting an internal server error at login? in Installation</title>
    <link>https://community.splunk.com/t5/Installation/Why-am-I-getting-an-internal-server-error-at-login/m-p/324258#M4665</link>
    <description>&lt;P&gt;check &lt;CODE&gt;splunkd.log&lt;/CODE&gt; ( $SPLUNK_HOME\var\log\splunk\ ) to see what the error is about, also check if any firewall or Windows UAC is playing badly.&lt;/P&gt;

&lt;P&gt;cheers, MuS&lt;/P&gt;</description>
    <pubDate>Tue, 10 Apr 2018 01:22:20 GMT</pubDate>
    <dc:creator>MuS</dc:creator>
    <dc:date>2018-04-10T01:22:20Z</dc:date>
    <item>
      <title>Why am I getting an internal server error at login?</title>
      <link>https://community.splunk.com/t5/Installation/Why-am-I-getting-an-internal-server-error-at-login/m-p/324255#M4662</link>
      <description>&lt;P&gt;I just installed Splunk and when started it in the browser, first time signing in option was there with admin and changeme. I entered it and it navigated me to the next page to set up a new password. Once I entered the new password and clicked on set password, I was taken to a page saying:&lt;/P&gt;

&lt;P&gt;500 Internal Server Error&lt;BR /&gt;
Return to Splunk home page&lt;/P&gt;

&lt;P&gt;View more information about your request (request ID = 5acb8c24f81a8c0e3b2e8) in Search &lt;BR /&gt;
This page was linked to from &lt;A href="http://localhost:8000/" target="_blank"&gt;http://localhost:8000/&lt;/A&gt;.&lt;BR /&gt;
You are using localhost:8000, which is connected to splunkd @000 at &lt;A href="https://127.0.0.1:8089" target="_blank"&gt;https://127.0.0.1:8089&lt;/A&gt; on Mon Apr 9 21:22:05 2018.&lt;/P&gt;

&lt;P&gt;Further checked splunkd.log . These are the errors :&lt;BR /&gt;
04-10-2018 06:59:34.801 +0530 ERROR ExecProcessor - message from "python "C:\Program Files\Splunk\etc\apps\splunk_instrumentation\bin\on_splunk_start.py"" ERROR:InstrumentationInit:[Errno 10054] An existing connection was forcibly closed by the remote host&lt;BR /&gt;
04-10-2018 06:59:35.311 +0530 INFO  IntrospectionGenerator:resource_usage -   RU_main - I-data gathering (Resource Usage) starting; period=10s&lt;BR /&gt;
04-10-2018 06:59:35.311 +0530 WARN  IntrospectionGenerator:resource_usage -   RU - Failure executing initial disk PDH query, status code is -2147481643&lt;BR /&gt;
04-10-2018 06:59:35.311 +0530 INFO  IntrospectionGenerator:resource_usage -   RU_main - I-data gathering (IO Statistics) starting; interval=60s&lt;BR /&gt;
04-10-2018 06:59:35.311 +0530 WARN  IntrospectionGenerator:resource_usage -   RU - Failure executing PDH query, skipping getting iostats data this collection cycle. Status code is -2147481643&lt;BR /&gt;
04-10-2018 06:59:36.819 +0530 ERROR ExecProcessor - message from "python "C:\Program Files\Splunk\etc\apps\splunk_monitoring_console\bin\dmc_config.py"" Socket error communicating with splunkd (error=[Errno 10054] An existing connection was forcibly closed by the remote host), path = /services/shcluster/config?output_mode=json&lt;BR /&gt;
04-10-2018 06:59:36.819 +0530 INFO  ExecProcessor - message from "python "C:\Program Files\Splunk\etc\apps\splunk_monitoring_console\bin\dmc_config.py"" Cannot connect to splunkd. Will not disable DMC.&lt;BR /&gt;
04-10-2018 07:00:16.733 +0530 ERROR SearchOperator:copyresults - Cannot find results for search_id 'scheduler_&lt;EM&gt;nobody_c3BsdW5rX21vbml0b3JpbmdfY29uc29sZQ&lt;/EM&gt;&lt;EM&gt;RMD54740dfff07b17ef1_at_1523323765_0'.&lt;BR /&gt;
04-10-2018 07:00:16.733 +0530 ERROR SearchScheduler - Error in 'SearchOperator:copyresults': Cannot find results for search_id 'scheduler&lt;/EM&gt;&lt;EM&gt;nobody_c3BsdW5rX21vbml0b3JpbmdfY29uc29sZQ&lt;/EM&gt;&lt;EM&gt;RMD54740dfff07b17ef1_at_1523323765_0'., search='copyresults dest="dmc_assets"  sid="scheduler&lt;/EM&gt;&lt;EM&gt;nobody_c3BsdW5rX21vbml0b3JpbmdfY29uc29sZQ&lt;/EM&gt;_RMD54740dfff07b17ef1_at_1523323765_0"'&lt;BR /&gt;
04-10-2018 07:00:27.438 +0530 INFO  DatabaseDirectoryManager - idx=_internal Writing a bucket manifest in hotWarmPath='C:\Program Files\Splunk\var\lib\splunk_internaldb\db', pendingBucketUpdates=0 .  Reason='Buckets were rebuilt or tsidx-minified (bucket_count=1).'&lt;/P&gt;

&lt;P&gt;How to resolve this issue?&lt;/P&gt;</description>
      <pubDate>Tue, 29 Sep 2020 18:57:25 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Why-am-I-getting-an-internal-server-error-at-login/m-p/324255#M4662</guid>
      <dc:creator>Parv007</dc:creator>
      <dc:date>2020-09-29T18:57:25Z</dc:date>
    </item>
    <item>
      <title>Re: Why am I getting an internal server error at login?</title>
      <link>https://community.splunk.com/t5/Installation/Why-am-I-getting-an-internal-server-error-at-login/m-p/324256#M4663</link>
      <description>&lt;P&gt;Be sure to set the following before starting for the first time:&lt;/P&gt;

&lt;P&gt;export SPLUNK_HOME=/my/splunk/dir&lt;BR /&gt;
source $SPLUNK_HOME/bin/setSplunkEnv&lt;BR /&gt;
Add $SPLUNK_HOME/bin to your PATH&lt;BR /&gt;
export PATH=$SPLUNK_HOME/bin:$PATH&lt;/P&gt;

&lt;P&gt;Check to make sure 'which python' is referencing the local, splunk, python libs:&lt;/P&gt;

&lt;P&gt;[splunkysploo]# which python&lt;BR /&gt;
/&amp;lt;$SPLUNK_HOME&amp;gt;/bin/python&lt;/P&gt;

&lt;P&gt;Then, start Splunk with $SPLUNK_HOME/bin/splunk start as per usual.&lt;/P&gt;</description>
      <pubDate>Tue, 29 Sep 2020 18:57:29 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Why-am-I-getting-an-internal-server-error-at-login/m-p/324256#M4663</guid>
      <dc:creator>p_gurav</dc:creator>
      <dc:date>2020-09-29T18:57:29Z</dc:date>
    </item>
    <item>
      <title>Re: Why am I getting an internal server error at login?</title>
      <link>https://community.splunk.com/t5/Installation/Why-am-I-getting-an-internal-server-error-at-login/m-p/324257#M4664</link>
      <description>&lt;P&gt;I am using it on windows and not Linux . Can you share the steps to rectify this issue on windows .&lt;/P&gt;</description>
      <pubDate>Tue, 10 Apr 2018 00:03:24 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Why-am-I-getting-an-internal-server-error-at-login/m-p/324257#M4664</guid>
      <dc:creator>Parv007</dc:creator>
      <dc:date>2018-04-10T00:03:24Z</dc:date>
    </item>
    <item>
      <title>Re: Why am I getting an internal server error at login?</title>
      <link>https://community.splunk.com/t5/Installation/Why-am-I-getting-an-internal-server-error-at-login/m-p/324258#M4665</link>
      <description>&lt;P&gt;check &lt;CODE&gt;splunkd.log&lt;/CODE&gt; ( $SPLUNK_HOME\var\log\splunk\ ) to see what the error is about, also check if any firewall or Windows UAC is playing badly.&lt;/P&gt;

&lt;P&gt;cheers, MuS&lt;/P&gt;</description>
      <pubDate>Tue, 10 Apr 2018 01:22:20 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Why-am-I-getting-an-internal-server-error-at-login/m-p/324258#M4665</guid>
      <dc:creator>MuS</dc:creator>
      <dc:date>2018-04-10T01:22:20Z</dc:date>
    </item>
    <item>
      <title>Re: Why am I getting an internal server error at login?</title>
      <link>https://community.splunk.com/t5/Installation/Why-am-I-getting-an-internal-server-error-at-login/m-p/324259#M4666</link>
      <description>&lt;P&gt;04-10-2018 06:59:34.801 +0530 ERROR ExecProcessor - message from "python "C:\Program Files\Splunk\etc\apps\splunk_instrumentation\bin\on_splunk_start.py"" ERROR:InstrumentationInit:[Errno 10054] An existing connection was forcibly closed by the remote host&lt;BR /&gt;
04-10-2018 06:59:35.311 +0530 WARN  IntrospectionGenerator:resource_usage -   RU - Failure executing initial disk PDH query, status code is -2147481643&lt;BR /&gt;
04-10-2018 06:59:35.311 +0530 WARN  IntrospectionGenerator:resource_usage -   RU - Failure executing PDH query, skipping getting iostats data this collection cycle. Status code is -2147481643&lt;BR /&gt;
04-10-2018 06:59:36.819 +0530 ERROR ExecProcessor - message from "python "C:\Program Files\Splunk\etc\apps\splunk_monitoring_console\bin\dmc_config.py"" Socket error communicating with splunkd (error=[Errno 10054] An existing connection was forcibly closed by the remote host), path = /services/shcluster/config?output_mode=json&lt;BR /&gt;
04-10-2018 06:59:36.819 +0530 INFO  ExecProcessor - message from "python "C:\Program Files\Splunk\etc\apps\splunk_monitoring_console\bin\dmc_config.py"" Cannot connect to splunkd. Will not disable DMC.&lt;BR /&gt;
04-10-2018 07:00:16.733 +0530 ERROR SearchOperator:copyresults - Cannot find results for search_id 'scheduler_&lt;EM&gt;nobody_c3BsdW5rX21vbml0b3JpbmdfY29uc29sZQ&lt;/EM&gt;&lt;EM&gt;RMD54740dfff07b17ef1_at_1523323765_0'.&lt;BR /&gt;
04-10-2018 07:00:16.733 +0530 ERROR SearchScheduler - Error in 'SearchOperator:copyresults': Cannot find results for search_id 'scheduler&lt;/EM&gt;&lt;EM&gt;nobody_c3BsdW5rX21vbml0b3JpbmdfY29uc29sZQ&lt;/EM&gt;&lt;EM&gt;RMD54740dfff07b17ef1_at_1523323765_0'., search='copyresults dest="dmc_assets"  sid="scheduler&lt;/EM&gt;&lt;EM&gt;nobody_c3BsdW5rX21vbml0b3JpbmdfY29uc29sZQ&lt;/EM&gt;_RMD54740dfff07b17ef1_at_1523323765_0"'&lt;BR /&gt;
04-10-2018 07:00:27.438 +0530 INFO  DatabaseDirectoryManager - idx=_internal Writing a bucket manifest in hotWarmPath='C:\Program Files\Splunk\var\lib\splunk_internaldb\db', pendingBucketUpdates=0 .  Reason='Buckets were rebuilt or tsidx-minified (bucket_count=1).'&lt;/P&gt;</description>
      <pubDate>Tue, 29 Sep 2020 18:57:43 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Why-am-I-getting-an-internal-server-error-at-login/m-p/324259#M4666</guid>
      <dc:creator>Parv007</dc:creator>
      <dc:date>2020-09-29T18:57:43Z</dc:date>
    </item>
    <item>
      <title>Re: Why am I getting an internal server error at login?</title>
      <link>https://community.splunk.com/t5/Installation/Why-am-I-getting-an-internal-server-error-at-login/m-p/324260#M4667</link>
      <description>&lt;P&gt;Please see . I have updated the issue . Help me in rectifying those errors which are listed above .&lt;/P&gt;</description>
      <pubDate>Tue, 10 Apr 2018 01:36:39 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Why-am-I-getting-an-internal-server-error-at-login/m-p/324260#M4667</guid>
      <dc:creator>Parv007</dc:creator>
      <dc:date>2018-04-10T01:36:39Z</dc:date>
    </item>
    <item>
      <title>Re: Why am I getting an internal server error at login?</title>
      <link>https://community.splunk.com/t5/Installation/Why-am-I-getting-an-internal-server-error-at-login/m-p/324261#M4668</link>
      <description>&lt;P&gt;This may help:&lt;BR /&gt;
&lt;A href="http://dev.splunk.com/view/quickstart/SP-CAAAFDH"&gt;http://dev.splunk.com/view/quickstart/SP-CAAAFDH&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;Also check that 8000 port is open on your system. &lt;/P&gt;</description>
      <pubDate>Tue, 10 Apr 2018 07:51:28 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Why-am-I-getting-an-internal-server-error-at-login/m-p/324261#M4668</guid>
      <dc:creator>p_gurav</dc:creator>
      <dc:date>2018-04-10T07:51:28Z</dc:date>
    </item>
  </channel>
</rss>

