Getting Data In

How to configure my indexer to listen on port 8191?

wliu_ondeck
Explorer

During a review, I found out that one of our indexers is not listening on port tcp/8191.

From my reading, I found out that tcp/8191 is for the kvstore.

What troubleshooting steps would I need to take so that this indexer begins to listen on tcp/8191?

0 Karma

lguinn2
Legend

Go to the command line and change to the $SPLUNK_HOME/bin directory.
Use splunk show kvstore-port to see what port has been assigned to the KVstore.
Use splunk set kvstore-port 8191 to set the port to 8191, then restart Splunk.

After Splunk has been restarted, it should be fine. You can use the show command above to check on it.

0 Karma
Get Updates on the Splunk Community!

.conf25 Registration is OPEN!

Ready. Set. Splunk! Your favorite Splunk user event is back and better than ever. Get ready for more technical ...

Detecting Cross-Channel Fraud with Splunk

This article is the final installment in our three-part series exploring fraud detection techniques using ...

Splunk at Cisco Live 2025: Learning, Innovation, and a Little Bit of Mr. Brightside

Pack your bags (and maybe your dancing shoes)—Cisco Live is heading to San Diego, June 8–12, 2025, and Splunk ...