modify the assets.csv file on the instance where is installed DMC
file locate = etc/apps/splunk_management_console/lookups/assets.csv
You need to update this file with the new/good informations (in my case new SH, change name/IP and ID if different)
I just :
modify my "distsearch.conf" on DMC instance
modify the "assets.csv" on DMC instance
add the trusted.pem on my new SH
restart my new SH and my DMC instance
and all is OK
Hope help you
This was the only thing that worked for me, at least editing the assets.csv. A decomm'd indexer wouldn't go away from the monitoring console, editing the assets.csv took the indexer out of the monitoring console (v6.6.3).
I also had the same problem but the indexer I took down did not show at all in the DMC settings so I could not disable it. I just clicked the "Apply Changes" button anyway and that removed the indexer from the other DMC views.
I had the same problem but runnign all steps again it worked
1 - Open the DMC -> Settings -> General Setup -> Edit next to the indexer -> Disable monitoring
2 - Restart Master server
3 - Apply Changes on DMC -> Settings -> General Setup
you need to disable it as search peer Settings / Distributed search / Search peers
then you need to remove it from dmc settings" -> general setup -> edit next to the indexer -> disable monitoring
It gets more interesting...
The "Overview" page shows 18 indexers and 12 unreachable (the 12 that I decommed via "offline"). The general setup page does not show them at all. I went into the "managementconsole_overview" view, and it lists the following:
<?xml version="1.0"?> <view template="pages/app.html" type="html"> <label>Overview</label> </view>
I looked for that html page under ../etc, but found nothing. Thoughts?