Installation

Error setting desitnation index

michael_peters
Path Finder

I am running splunk 6.0.2 on OS X 10.7.5 The serach head, indexer are all installed on the same box.

I added the /var/log directory as well as /var/log/system.log file separately to be indexed.

Both the above indexed fine however after a splunk restart, I am getting the following error in web_service.log

2014-03-06 07:44:25,317
ERROR [531889c8b91086a0590] eai:164 -
Failed to fetch dynamic element
content from the server for
splunkSource:/search/jobs/oneshot
[HTTP 204] Unexpected HTTP status code

This corresponds to the following error in Splunk Web:

Data inputs>>Files & Directories>>/var/log>>Index

Failed to fetch data: Unexpected HTTP status code.

I tried to create a new index but this has not solved the issue. I have also restarted splunk, both from the cli and Splunk Web.

Tags (4)
0 Karma
1 Solution

michael_peters
Path Finder

Install Splunk 6.0.1 instead:

This issue was fixed by uninstalling Splunk 6.0.2 and installing 6.0.1 instead.

There appear to be some bugs in the install dmg for 6.0.2:

splunk-6.0.2-196940-macosx-10.7-intel.dmg

View solution in original post

0 Karma

michael_peters
Path Finder

Install Splunk 6.0.1 instead:

This issue was fixed by uninstalling Splunk 6.0.2 and installing 6.0.1 instead.

There appear to be some bugs in the install dmg for 6.0.2:

splunk-6.0.2-196940-macosx-10.7-intel.dmg

0 Karma
Get Updates on the Splunk Community!

Splunk Observability Cloud | Customer Survey!

If you use Splunk Observability Cloud, we invite you to share your valuable insights with us through a brief ...

Happy CX Day, Splunk Community!

Happy CX Day, Splunk Community! CX stands for Customer Experience, and today, October 3rd, is CX Day — a ...

.conf23 | Get Your Cybersecurity Defense Analyst Certification in Vegas

We’re excited to announce a new Splunk certification exam being released at .conf23! If you’re going to Las ...