Getting Data In

Intermittent connection error messages

meconomou
Engager

I’m still seeing intermittent connection error messages between the Splunk search heads and indexers.

It looks like the search heads perform a file copy across port 8089 to the indexers on a recurring basis. If those copies fail, then searches / timed reports / whatever will fail too. So, kinda important.

05-12-2011 08:45:56.443 -0500 WARN DistributedBundleReplicationManager - Unable to connect to remote peer: https://64.x.x.x:8089.

05-12-2011 08:45:28.158 -0500 ERROR DistributedBundleReplicationManager - Unable to get remote checksum from peer named 10.x.x.x with uri=https://64.x.x.x:8089

05-12-2011 08:45:28.158 -0500 WARN DistributedBundleReplicationManager - Unable to connect to remote peer: https://64.x.x.x:8089.

05-12-2011 08:45:28.157 -0500 ERROR DistributedBundleReplicationManager - Unable to get remote checksum from peer named 10.x.x.x with uri=https://64.x.x.x:8089

05-12-2011 08:45:28.157 -0500 WARN DistributedBundleReplicationManager - Unable to connect to remote peer: https://64.x.x.x:8089.

05-12-2011 08:45:28.156 -0500 WARN DistributedBundleReplicationManager - Unable to login to remote peer at https://64.x.x.x:8089 named 10.x.x.x with username splunk-system-user

05-12-2011 08:45:28.155 -0500 WARN DistributedBundleReplicationManager - Unable to login to remote peer at https://64.x.x.x:8089 named 10.x.x.x with username splunk-system-user

0 Karma
1 Solution

meconomou
Engager

disregard. was a scripting issue...

View solution in original post

0 Karma

meconomou
Engager

disregard. was a scripting issue...

0 Karma
Get Updates on the Splunk Community!

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...