Installation

Receiving the following error: "failed to start splunk.service: unit splunk.service not found"/ SplunkForwarder.service

Qyusuff
New Member

Been receiving this error from my UF. extremely frustrating since splunk doesn't offer any support unless your paying them.

-did then system daemon reload 

- enable/disable boot-start

- reviewed splunkd.log

-Somtimes it would say splunk.pid doesnt exist.

-What the hell is going on here, failures for both  Ubuntu and AWS

Splunk FW: Receiving the following error: "failed to start splunk.service: unit splunk.service not found"

SplunkForwarder.service - Systemd service file for Splunk, generated by 'splunk enable boot-start'
Loaded: error (Reason: Unit SplunkForwarder.service failed to load properly, please adjust/correct and reload service manager: Device or resource busy)
Active: failed (Result: signal) since Wed 2024-01-17 20:04:18 UTC; 13s ago
Duration: 1min 48.199s
Main PID: 14888 (code=killed, signal=KILL)
CPU: 2.337s

 

Labels (1)
0 Karma

kairobin
Path Finder

Hello
We also got this issue.
Did you find any answer or solution?

When installing SplunkForwarder.service have enabled boot start
But after at reboot it is changed to disabled boot start. 

We clearly can not be the only ones experienced this. 

This is running on a Red Hat Plow
and running UF version 9

 

0 Karma

inventsekar
SplunkTrust
SplunkTrust

Hi @Qyusuff 

The UF version details  and ubuntu version please

was it working previously and recently you receive this error?  any recent changes, upgrades, etc?

the UF was installed manually or thru tools like chef/puppet/salt?

may i know if you had a look at the splunk log files at that UF.. 

thanks and best regards,
Sekar

PS - If this or any post helped you in any way, pls consider upvoting, thanks for reading !
0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.

Can’t make it to .conf25? Join us online!

Get Updates on the Splunk Community!

Community Content Calendar, September edition

Welcome to another insightful post from our Community Content Calendar! We're thrilled to continue bringing ...

Splunkbase Unveils New App Listing Management Public Preview

Splunkbase Unveils New App Listing Management Public PreviewWe're thrilled to announce the public preview of ...

Leveraging Automated Threat Analysis Across the Splunk Ecosystem

Are you leveraging automation to its fullest potential in your threat detection strategy?Our upcoming Security ...