Getting Data In

Why does Splunk ask me to restart when I create a new index?

gibba
Path Finder

Hi everyone,

I don't understand why, but when I create a new index, Splunk needs a restart.

Do you have best practice for this?

Thank a lot

Tags (3)
0 Karma
1 Solution

dineshraj
Explorer

Try using the rest endpoint to create indexes, it won't ask you for a restart. But you need to run the command on all your indexers -

curl -k -u : https://indexer:port/servicesNS///data/indexes -d name=

View solution in original post

0 Karma

somesoni2
Revered Legend
0 Karma

dineshraj
Explorer

Try using the rest endpoint to create indexes, it won't ask you for a restart. But you need to run the command on all your indexers -

curl -k -u : https://indexer:port/servicesNS///data/indexes -d name=

0 Karma
*NEW* Splunk Love Promo!
Snag a $25 Visa Gift Card for Giving Your Review!

It's another Splunk Love Special! For a limited time, you can review one of our select Splunk products through Gartner Peer Insights and receive a $25 Visa gift card!

Review:





Or Learn More in Our Blog >>