8.2.5 Enterprise
_internal index has 5 buckets with this error:
ClusterSlaveBucketHandler [xxxxxx TcpChannelThread] - Failed to trigger replication (err='Cannot replicate remote storage enabled warm bucket, bid=_internal~xx~xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx until it's uploaded
Restarting the CM dropped the bucket in fixup from 25 to 5, but these 5 remain.
Anyone facing this or have any resolution tips?
Thanks!
Thank you @gcusello and sorry for the delayed acceptance. FYI for anyone looking for the specific solution, it was a known 8.2.6 issue
https://docs.splunk.com/Documentation/Splunk/8.2.6/ReleaseNotes/Knownissues
SPL-200532