Getting Data In

How do I prevent Splunkd crashing with memory allocation error?

vikas_gopal
Builder

Hello Splunk ES experts ,

My Splunkd is crashing frequently with below error in crash logs

C++ exception:
exception_addr=0x7ff2c2c3c620
typeinfo=0x556c38241c48, name=St9bad_alloc
Exception indicates memory allocation failure

This started after ES app installation . I have checked with free command I have plenty of  memory on the system 32GB and 16 CPU

               total                 used            free                   shared           buff/cache           available
Mem: 32750180     1764936    19979208     17744               11006036         31040488
Swap: 4169724          0                   4169724

 

Below are my ulimit settings 

splunk soft nofile 65535
splunk hard nofile 65535
splunk soft nproc 65535
splunk hard nproc 65535

Any suggestions please 

Labels (1)
Tags (1)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

Open a support case.

---
If this reply helps you, Karma would be appreciated.
0 Karma

vikas_gopal
Builder

I will file it but wanted check with the community is anyone else is also facing the same issue ?

0 Karma
Get Updates on the Splunk Community!

Aligning Observability Costs with Business Value: Practical Strategies

 Join us for an engaging Tech Talk on Aligning Observability Costs with Business Value: Practical ...

Mastering Data Pipelines: Unlocking Value with Splunk

 In today's AI-driven world, organizations must balance the challenges of managing the explosion of data with ...

Splunk Up Your Game: Why It's Time to Embrace Python 3.9+ and OpenSSL 3.0

Did you know that for Splunk Enterprise 9.4, Python 3.9 is the default interpreter? This shift is not just a ...