Getting Data In

Tutorial data upload error

becksyboy
Contributor

Hi,

I'm fairly new to Splunk and currently undergoing some training. Within my home lab I have a Splunk instance installed and am trying to upload the tutorial data. When i select the .zip file it says "uploading file" and is at 100%. After 10 mins i get an upload Error stating there was a read timeout?

Any ideas why i can't upload the .zip file?

thanks

gyslainlatsa
Motivator
0 Karma

piebob
Splunk Employee
Splunk Employee

I downvoted this post because the person didn't ask how to upload the file, he reported an error when he did.

0 Karma

dkeck
Influencer

Hello beckysboy,

maybe thats to simple but why don´t you unzip the data first?. Advantage would be that you have a preview, which is not supported for .zip files.

You may want to have a look at the splunk logs. Maybe that will give you more information about the error.

You can find them in $SPLUNK_HOME/var/log/splunk/splunkd.log

Kind Regards

0 Karma

lstewart_splunk
Splunk Employee
Splunk Employee

I downvoted this post because you should not unzip the tutorialdata file. splunk uncompresses the zip file when the file is uploaded. also, as i mentioned in my reply below, try moving the zip file to the root directory, such as c:\, and then upload the file into splunk.

0 Karma

becksyboy
Contributor

Thanks, that was my next step, I was following the instructions for the tutorial data, where it stated not to unzip, but ill unzip them first instead.

0 Karma

lstewart_splunk
Splunk Employee
Splunk Employee

Also, please ensure that the file is in a directory that does not have spaces in the file path.
Try moving the tutorialdata.zip file to your desktop or to c:\, then attempt the upload again.

Get Updates on the Splunk Community!

Splunk Observability Cloud’s AI Assistant in Action Series: Analyzing and ...

This is the second post in our Splunk Observability Cloud’s AI Assistant in Action series, in which we look at ...

Elevate Your Organization with Splunk’s Next Platform Evolution

 Thursday, July 10, 2025  |  11AM PDT / 2PM EDT Whether you're managing complex deployments or looking to ...

Splunk Answers Content Calendar, June Edition

Get ready for this week’s post dedicated to Splunk Dashboards! We're celebrating the power of community by ...