Getting Data In

Cannot Login to Forwarder

pchukwuma
New Member

After installing the Forwarder, I cannot login to it. I have executed SPLUNK CLEAN ALL, but cannot login. I also tried placing the user-seed.conf in the etc/system/local directory, but I still cannot login. What am I missing?

Tags (2)
0 Karma

Paolo_Prigione
Builder

Was the admin's default password of "changeme" ever changed? If you can not figure out the password, then

  1. stop the UF
  2. rename the $SPLUNK_HOME/etc/passwd file

Now you have the default credentials (admin/changeme) back.

However, if you want to achieve similar results to clean all, then:

  1. stop the UF
  2. rename $SPLUNK_HOME/var to something else
  3. rename $SPLUNK_HOME/etc/users to something else
  4. start the UF
  5. if everything works fine, drop the renamed folders.

Ayn
Legend

How are you trying to login? What credentials are you using?

0 Karma

DaveSavage
Builder

When you say 'log in' you are trying to connect to it through the GUI? It doesn't support that. You can access it via the CLI and there is a rich thread on the commands at http://docs.splunk.com/Documentation/Splunk/latest/Admin/CLIadmincommands (thanks Drainy 😉

0 Karma

pchukwuma
New Member

I am trying to login through the CLI. The Splunk Clean All is a CLI command.

0 Karma
Get Updates on the Splunk Community!

Introducing the 2024 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...

Introducing the 2024 Splunk MVPs!

We are excited to announce the 2024 cohort of the Splunk MVP program. Splunk MVPs are passionate members of ...

Splunk Custom Visualizations App End of Life

The Splunk Custom Visualizations apps End of Life for SimpleXML will reach end of support on Dec 21, 2024, ...