Getting Data In

Splunk Indexer Crashes in Cluster Environment

Splunk_Beginner
New Member

Hi, Splunk Folks, I would like to why INDEXER crashes very often in the Cluster Environment. What are the steps I need to check. Any config needs to be checked? tuned?. I am new to Splunk Admin.

Please suggest

Labels (1)
0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @Splunk_Beginner,

if you have a crash in a production system, open immediately a case to Splunk support, sending them a diag of the crushed system.

If your system is blocked (or in your case indexer frequently crashes), they call in max 30 minuts.

Remember the diag!

Ciao.

Giuseppe

 

0 Karma
.conf21 CFS Extended through 5/20!

Don't miss your chance
to share your Splunk
wisdom in-person or
virtually at .conf21!

Call for Speakers has
been extended through
Thursday, 5/20!