Installation

change splunk installation folder

splunkcol
Builder

 

if someone request to change the splunk installation folder:

1. Is it possible to just move and everything works normal?

2. what should I keep in mind? or exactly what should I do in a step by step?

 

the truth worries me a lot

As I see it, it is as if they asked me to move a program in windows from C to a D partition and hope that it continues to work normally and obviously that will not happen

Labels (2)
0 Karma
1 Solution

splunkcol
Builder

1. I entered the bin folder and stopped the splunk service with the command ./splunk stop

2. I moved splunk from opt which is the default path to a new folder that I have created in the root

3. I entered the new folder where I have moved the splunk folder, I entered the bin folder and started the service again with ./splunk start

In my case it worked 😃

Note: this process was under linux accessing by ssh

View solution in original post

0 Karma

splunkcol
Builder

1. I entered the bin folder and stopped the splunk service with the command ./splunk stop

2. I moved splunk from opt which is the default path to a new folder that I have created in the root

3. I entered the new folder where I have moved the splunk folder, I entered the bin folder and started the service again with ./splunk start

In my case it worked 😃

Note: this process was under linux accessing by ssh

0 Karma

splunkcol
Builder

 

I have stopped the service from bin folder using ./splunk stop then i moved the content of the install from the first folder to the second folder and i get an error message

 

root@index:/xxx/splunk/splunk/bin# ./splunk start

Splunk> CSI: Logfiles.

Checking prerequisites...
Checking http port [8000]: open
Checking mgmt port [8089]: open
Checking appserver port [127.0.0.1:8065]: open
Checking kvstore port [8191]: open
Checking configuration... Done.
The certificate generation script did not generate the expected certificate file:/opt/splunk/splunk/etc/auth/mycerts/myNewServerCertificate.pem. Splunkd port communication will not work.
SSL certificate generation failed.

0 Karma

inventsekar
SplunkTrust
SplunkTrust

1. Is it possible to just move and everything works normal?

nope, after installing Splunk or any application, moving the installation folder is not a good idea at all. 

before installing the splunk (or any app), choose the installation folder as per your choice. 

 

2. what should I keep in mind? or exactly what should I do in a step by step?

The Windows installer gives you two choices: Install with the default installation settings, or configure all settings prior to installing.

When you choose to install with the default settings, the installer does the following:

  • Installs Splunk Enterprise in \Program Files\Splunk on the drive that booted your Windows machine.
  • Installs Splunk Enterprise with the default management and Web network ports.
  • Configures Splunk Enterprise to run as the Local System user.
  • Prompts you to create a Splunk administrator password. You must do this before installation can continue.
  • Creates a Start Menu shortcut for the software.

If you want to change any of these default installation settings, click Customize Options and proceed with the instructions in "Customize Options" in this topic.

https://docs.splunk.com/Documentation/Splunk/8.1.0/Installation/InstallonWindows#Install_Splunk_Ente...

 

thanks and best regards,
Sekar

PS - If this or any post helped you in any way, pls consider upvoting, thanks for reading !

splunkcol
Builder

 

I have the doubt for this answer, according to this, in windows it is a bad idea, but in linux if it is viable

https://community.splunk.com/t5/Installation/move-Splunk-install-from-one-directory-to-another/m-p/1...

 

 

0 Karma

splunkcol
Builder

thanks for answer so soon

i have splunk installed on linux

0 Karma
Get Updates on the Splunk Community!

Splunkers, Pack Your Bags: Why Cisco Live EMEA is Your Next Big Destination

The Power of Two: Splunk + Cisco at "Ludicrous Scale"   You know Splunk. You know Cisco. But have you seen ...

Data Management Digest – January 2026

Welcome to the January 2026 edition of Data Management Digest! Welcome to the January 2026 edition of Data ...

Splunk SOAR Now Available on Google Cloud Platform

We’re excited to announce that Splunk SOAR is now natively available as a SaaS solution on Google Cloud ...