Getting Data In

Tutorial data upload error

becksyboy
Contributor

Hi,

I'm fairly new to Splunk and currently undergoing some training. Within my home lab I have a Splunk instance installed and am trying to upload the tutorial data. When i select the .zip file it says "uploading file" and is at 100%. After 10 mins i get an upload Error stating there was a read timeout?

Any ideas why i can't upload the .zip file?

thanks

gyslainlatsa
Motivator
0 Karma

piebob
Splunk Employee
Splunk Employee

I downvoted this post because the person didn't ask how to upload the file, he reported an error when he did.

0 Karma

dkeck
Influencer

Hello beckysboy,

maybe thats to simple but why don´t you unzip the data first?. Advantage would be that you have a preview, which is not supported for .zip files.

You may want to have a look at the splunk logs. Maybe that will give you more information about the error.

You can find them in $SPLUNK_HOME/var/log/splunk/splunkd.log

Kind Regards

0 Karma

lstewart_splunk
Splunk Employee
Splunk Employee

I downvoted this post because you should not unzip the tutorialdata file. splunk uncompresses the zip file when the file is uploaded. also, as i mentioned in my reply below, try moving the zip file to the root directory, such as c:\, and then upload the file into splunk.

0 Karma

becksyboy
Contributor

Thanks, that was my next step, I was following the instructions for the tutorial data, where it stated not to unzip, but ill unzip them first instead.

0 Karma

lstewart_splunk
Splunk Employee
Splunk Employee

Also, please ensure that the file is in a directory that does not have spaces in the file path.
Try moving the tutorialdata.zip file to your desktop or to c:\, then attempt the upload again.

Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...