Installation

Upgrade issue from 4.2 to 5.0.1

wildbill4
Path Finder

Did 2 upgrades 1 on a physical server and 1 on a Virtual Server.

The only difference between the servers is that on the Physical server the indexes are in the default location and on the Virtual server they are in a specific directory /splunkdb.

After upgrading splunk on a physical server I am unable to view any data. I search on source="who" which has 4 entries and get the search page - auto pausing window pops up to finalize search. "Your search is finalizing...." This runs for approximately 3 minutes and then I receive "Your network connection may have been lost or Splunk Web may be down". Checked and splunkweb is running. The search is still running. Unable to get off this screen. The only way to get off the search screen is to restart the splunk server.

I have ran the clean eventdata on the database with no help.

Any assistance would be greatly appreciated.

Where can I look for further information?

Tags (2)
0 Karma
1 Solution

wildbill4
Path Finder

Reloaded Splunk software as a new install and the problem did not happen again.

View solution in original post

0 Karma

wildbill4
Path Finder

Reloaded Splunk software as a new install and the problem did not happen again.

0 Karma

wildbill4
Path Finder

Reloaded server

0 Karma
Get Updates on the Splunk Community!

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...