Installation

Couldn't determine $SPLUNK_HOME or $SPLUNK_ETC;

syloee
Explorer

hi everyone

i installed splunk after delete splunk 

i go /splunk/bin and ./splunk start

i see error message "ERROR: Couldn't determine $SPLUNK_HOME or $SPLUNK_ETC; perhaps one should be set in environment"

how i can do?

thank you very much!

0 Karma
1 Solution

venkatasri
SplunkTrust
SplunkTrust

@syloee you could try setting splunk_home variable as advised here - https://community.splunk.com/t5/Deployment-Architecture/Where-is-splunk-installed-on-Linux/m-p/12313...

--

An upvote would be appreciated and accept solution if it helps!

View solution in original post

0 Karma

codebuilder
Influencer

Please mark one of the answers as valid in order to help future users.

----
An upvote would be appreciated and Accept Solution if it helps!
0 Karma

syloee
Explorer

thank you

0 Karma

codebuilder
Influencer

Did you re-install Splunk as the root user? If so, the directory permissions might be off.

Assuming you are running Splunk as the splunk user, try using chown -RP splunk:splunk /opt/splunk

You can additionally modify $SPLUNK_HOME in /opt/splunk/etc/splunk-launch.conf (assuming you installed on Linux to the default directory).

----
An upvote would be appreciated and Accept Solution if it helps!
0 Karma

syloee
Explorer

thank you very much

0 Karma

venkatasri
SplunkTrust
SplunkTrust

@syloee you could try setting splunk_home variable as advised here - https://community.splunk.com/t5/Deployment-Architecture/Where-is-splunk-installed-on-Linux/m-p/12313...

--

An upvote would be appreciated and accept solution if it helps!

0 Karma

syloee
Explorer

thank you very much!

0 Karma
Get Updates on the Splunk Community!

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...