Installation

Unable to push configuration bundle

_pravin
Contributor

Hi,

 

I am trying to push the configuration bundle from the CM to the indexers. I keep getting the error message "Last Validate and Check Restart:  Unsuccessful"

The validation is done for one of the indexers, and it's 'checking for restart' for the other two indexers.

When I checked the last change date for all the indexers, only one of them has been updated and the other 2 are not. But it's opposite to what is shown in the UI of the CM.

 

Regards,

Pravin

 

 

_pravin_0-1737042561656.png

0 Karma

_pravin
Contributor

Hi @gcusello ,

We have enough space in the servers, it's not an issue with the disk.

Thanks,

Pravin

0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @_pravin ,

in this case, I'm sorry, but the only solution is to open a case to Splunk Support.

before opening the case, remember to prepare the diags of the CM, the OK IDX and one NOT OK IDX.

Ciao.

Giuseppe

gcusello
SplunkTrust
SplunkTrust

Hi @_pravin ,

check if you have enough disk space in all your indexers.

If you have, open a case to Splunk Support.

Ciao.

Giuseppe

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

What Is the Name of the USB Key Inserted by Bob Smith? (BOTS Hint, Not the Answer)

Hello Splunkers,   So you searched, “what is the name of the usb key inserted by bob smith?”  Not gonna lie… ...

Automating Threat Operations and Threat Hunting with Recorded Future

    Automating Threat Operations and Threat Hunting with Recorded Future June 29, 2026 | Register   Is your ...