I just installed Splunk ver 7.0, up from ver 6.5
The Splunk server starts, and I can search but I get these errors:
Failed to start KV Store process. See mongod.log and splunkd.log for details. 7/1/2019, 8:51:23 AM
KV Store changed the status to failed. KVStore process terminated. 7/1/2019, 8:51:12 AM
KV Store process terminated abnormally (exit code 100, status exited with code 100). See mongod.log and splunkd.log for details.
I have checked the logs, but see no clear path to fix or eliminate these errors.
Any clues?
Could I copy KV store files from a different Splunk server?
eholz1
Hello All,
I will check the link you provided. Thanks for the replies
If this is a lab, blow it away and install fresh.
Not a lab for this case
@eholz1
Did you check the mongod,log file which is available in var\log\splunk\mongod.log