Deployment Architecture

How to resolve error "A script exited abnormally" after updating serverclass.conf?

Hemnaath
Motivator

Hi All, Can anyone guide us in how to fix this problem? We updated the serverclass.conf recently via deployment server and this message started popping out after updating the serverclass.conf in one of the Splunk search head instances.

"A script exited abnormally" input="$SPLUNK_HOME/etc/apps/TEST-ADMIN-all_indexers/bin/install.sh" stanza="default" status="exited with code 127"

When checked in the particular Splunk instance under /opt/splunk/etc/apps/ this particular app detail was missing "TEST-ADMIN-all_indexers" but this app is still there in Splunk Web -- Manage Apps -- TEST-ADMIN-all_indexers still in enable state. So by disabling and restarting the Splunk service, will it fix this issue or we need to try some other method to fix this?

Splunk version 6.2.1

Thanks in advance.

0 Karma
1 Solution

Hemnaath
Motivator

Hi All, we have fixed the issue after disabling and restarting the splunk instance. After this process the message vanished from splunk web portal. The reason behind the message due recent update in serverclass.conf where we have removed this particular app from the splunk instance but app was there enabled still in the splunk web portal.

View solution in original post

0 Karma

Hemnaath
Motivator

Hi All, we have fixed the issue after disabling and restarting the splunk instance. After this process the message vanished from splunk web portal. The reason behind the message due recent update in serverclass.conf where we have removed this particular app from the splunk instance but app was there enabled still in the splunk web portal.

0 Karma
Get Updates on the Splunk Community!

Unleash Unified Security and Observability with Splunk Cloud Platform

     Now Available on Microsoft AzureThursday, March 27, 2025  |  11AM PST / 2PM EST | Register NowStep boldly ...

Splunk AppDynamics with Cisco Secure Application

Web applications unfortunately present a target rich environment for security vulnerabilities and attacks. ...

New Splunk Innovations Enhance Performance and Accelerate Troubleshooting

Splunk is excited to announce new releases that empower ITOps and engineering teams to stay ahead in ever ...