Monitoring Splunk

Space Issues In my C-drive

Contributor

Hi,

Splunk is installed in C-drive C:\Program Files\Splunk\var\log\splunk

My Question is can i move the splunk folder(which has occupied 1.04GB) to some otheer drive.

Has anyone come across this issue, I really need your help splunkers.

Any Help is Appreciated,

Thanks.

Tags (3)
0 Karma
1 Solution

Splunk Employee
Splunk Employee

That would not preserve the data that has already been indexed. You need to read this:

http://docs.splunk.com/Documentation/Splunk/6.0.3/Indexer/Moveanindex#For_Windows_users

View solution in original post

Splunk Employee
Splunk Employee

That would not preserve the data that has already been indexed. You need to read this:

http://docs.splunk.com/Documentation/Splunk/6.0.3/Indexer/Moveanindex#For_Windows_users

View solution in original post

Contributor

Hi David,
According to your link
http://docs.splunk.com/Documentation/Splunk/6.0.3/Indexer/Moveanindex#For_Windows_users
In Step-4 Copying the Indexes to new path
it is given as
copy "C:\Program Files\Splunk\var\lib\splunk\." D:\new\path\for\index /s /e /v /o /k
But in my Splunk Instance the var\\lib has occupied very less space but my var\\log\\splunk has occupied 1.52GB.

0 Karma

Contributor

http://answers.splunk.com/answers/126360/disk-space-error
this is my post after which i changed the path in General Settings

0 Karma

Splunk Employee
Splunk Employee

Try searching more on Splunk Answers as many of these questions have been answered several times already.

0 Karma

Splunk Employee
Splunk Employee

Change your log settings. Read this:

http://docs.splunk.com/Documentation/Splunk/6.0.3/Troubleshooting/WhatSplunklogsaboutitself

For permanent changes, use $SPLUNK_HOME/etc/log.cfg instead.

0 Karma

Contributor

long time ago I have changed the path in System Settings>General Settings under that "Path to indexes=Specified the path"

So from then on all my indexed data is located in the Specified path

So i wanted to know what is the cause for the 1GB of data that is been populated under C:Program Files\Splunk\var\log\splunk

0 Karma