Monitoring Splunk

After my certificates expired and I followed the steps in documentation for getting third party certificates, why is splunkd not starting?

apentaros
Engager

My certificates expired recently and I did the procedures in this article :

http://docs.splunk.com/Documentation/Splunk/6.2.2/Security/Howtogetthird-partycertificates#Next_step... .

All the steps were successful and I manage to combine the requested files into one. I place it under Splunk_home\etc\auth\mycerts\ and restart splunk.

Splunkweb is starting fine but splunkd is not. Can you advise me what I did wrong and how I can get this working? I am new to Splunk as I got the server from another colleague that resigned.

Tags (2)

NOUMSSI
Builder

Hi,

Make sure that there is no application installed on your system that use the port 8089.
Restart splunkd with cmt if you are on windows or with terminal if you are on linux

0 Karma

apentaros
Engager

My server is on Windows 2012 64-bit. I did one netstat -a to list all ports that are used. strangely I don't see the port 8089 to be used not by Splunk nor by other device!

0 Karma
Get Updates on the Splunk Community!

Announcing Scheduled Export GA for Dashboard Studio

We're excited to announce the general availability of Scheduled Export for Dashboard Studio. Starting in ...

Extending Observability Content to Splunk Cloud

Watch Now!   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to leverage ...

More Control Over Your Monitoring Costs with Archived Metrics GA in US-AWS!

What if there was a way you could keep all the metrics data you need while saving on storage costs?This is now ...