Deployment Architecture

Port numbers for Splunk services

vikram_m
Path Finder

Hello Team,

I have a server allocated to me with Splunk I installed on it.

Now I am unable to integrate the Splunk instances together e.g Indexer, Searchhead and get data into Splunk.

When I tried telnet for the Splunk servers on port 8089 and 9997 it is showing me not reachable.

Other than this when I reachedout to the infra team they suggested they have opened the port it is just that the service is not running and that is the reason the port isnot getting telnet and reachable.

I am seeing on the server that Splunk is running fine and so I am confused now is there any other service Splunk runs on 9997 and 8089 port.

Please let me know which services are running on 8089 and 9997 port so that we can get into the root cause get the env up and reporting.

Below are the services I can see running on the Splunk instances I am talking about.

[splunkqaindexer1 ~]$ ps -ef | grep -i splunk
splunk 19521 1 0 Feb14 ? 00:17:35 splunkd -p 8089 restart
splunk 19527 19521 0 Feb14 ? 00:00:28 [splunkd pid=19521] splunkd -p 8089 restart [process-runner]
splunk 19535 19527 0 Feb14 ? 00:08:10 mongod --dbpath=/splunkdata/kvstore/mongo --port=8191 --timeStampFormat=iso8601-utc --smallfiles --oplogSize=200 --keyFile=/splunkdata/kvstore/mongo/splunk.key --setParameter=enableLocalhostAuthBypass=0 --replSet=AB885084-8D23-43CC-B868-8C1905EB56CF --sslAllowInvalidHostnames --sslMode=preferSSL --sslPEMKeyFile=/opt/splunk/etc/auth/server.pem --sslPEMKeyPassword=xxxxxxxx --nounixsocket --noscripting
splunk 19642 19527 0 Feb14 ? 00:05:59 /opt/splunk/bin/python -O /opt/splunk/lib/python2.7/site-packages/splunk/appserver/mrsparkle/root.py --proxied=127.0.0.1,8065,8000
splunk 19699 19527 0 Feb14 ? 00:01:43 /opt/splunk/bin/splunkd instrument-resource-usage -p 8089 --with-kvstore
root 54540 54511 0 07:09 pts/2 00:00:00 su - splunk
splunk 54544 54540 0 07:09 pts/2 00:00:00 -bash
splunk 54581 54544 0 07:10 pts/2 00:00:00 bash
splunk 54626 54581 0 07:10 pts/2 00:00:00 ps -ef

These are the processes and services running on Linux server.

0 Karma

martin_mueller
SplunkTrust
SplunkTrust

You can ask splunk about itself:

$SPLUNK_HOME/bin/splunk status
$SPLUNK_HOME/bin/splunk btool web list | grep mgmtHostPort
$SPLUNK_HOME/bin/splunk display listen

vikram_m
Path Finder

Thanks martin.

0 Karma
Get Updates on the Splunk Community!

Updated Team Landing Page in Splunk Observability

We’re making some changes to the team landing page in Splunk Observability, based on your feedback. The ...

New! Splunk Observability Search Enhancements for Splunk APM Services/Traces and ...

Regardless of where you are in Splunk Observability, you can search for relevant APM targets including service ...

Webinar Recap | Revolutionizing IT Operations: The Transformative Power of AI and ML ...

The Transformative Power of AI and ML in Enhancing Observability   In the realm of IT operations, the ...