Monitoring Splunk

Space Issues In my C-drive

harshavrath
Contributor

Hi,

Splunk is installed in C-drive C:\Program Files\Splunk\var\log\splunk

My Question is can i move the splunk folder(which has occupied 1.04GB) to some otheer drive.

Has anyone come across this issue, I really need your help splunkers.

Any Help is Appreciated,

Thanks.

Tags (3)
0 Karma
1 Solution

dmaislin_splunk
Splunk Employee
Splunk Employee

That would not preserve the data that has already been indexed. You need to read this:

http://docs.splunk.com/Documentation/Splunk/6.0.3/Indexer/Moveanindex#For_Windows_users

View solution in original post

dmaislin_splunk
Splunk Employee
Splunk Employee

That would not preserve the data that has already been indexed. You need to read this:

http://docs.splunk.com/Documentation/Splunk/6.0.3/Indexer/Moveanindex#For_Windows_users

harshavrath
Contributor

Hi David,
According to your link
http://docs.splunk.com/Documentation/Splunk/6.0.3/Indexer/Moveanindex#For_Windows_users
In Step-4 Copying the Indexes to new path
it is given as
copy "C:\Program Files\Splunk\var\lib\splunk\." D:\new\path\for\index /s /e /v /o /k
But in my Splunk Instance the var\\lib has occupied very less space but my var\\log\\splunk has occupied 1.52GB.

0 Karma

harshavrath
Contributor

http://answers.splunk.com/answers/126360/disk-space-error
this is my post after which i changed the path in General Settings

0 Karma

dmaislin_splunk
Splunk Employee
Splunk Employee

Try searching more on Splunk Answers as many of these questions have been answered several times already.

0 Karma

dmaislin_splunk
Splunk Employee
Splunk Employee

Change your log settings. Read this:

http://docs.splunk.com/Documentation/Splunk/6.0.3/Troubleshooting/WhatSplunklogsaboutitself

For permanent changes, use $SPLUNK_HOME/etc/log.cfg instead.

0 Karma

harshavrath
Contributor

long time ago I have changed the path in System Settings>General Settings under that "Path to indexes=Specified the path"

So from then on all my indexed data is located in the Specified path

So i wanted to know what is the cause for the 1GB of data that is been populated under C:Program Files\Splunk\var\log\splunk

0 Karma
Get Updates on the Splunk Community!

Don't wait! Accept the Mission Possible: Splunk Adoption Challenge Now and Win ...

Attention everyone! We have exciting news to share! We are recruiting new members for the Mission Possible: ...

Unify Your SecOps with Splunk Mission Control

In today’s post, I'm excited to share some recent Splunk Mission Control innovations. With Splunk Mission ...

Data Preparation Made Easy: SPL2 for Edge Processor

By now, you may have heard the exciting news that Edge Processor, the easy-to-use Splunk data preparation tool ...