Monitoring Splunk

Stop splunk gracefully during system shutdown or reboot - RESOLVED

vikram_m
Path Finder

As the indexers and search heads are in cluster and on Unix OS, whenever there is a proper shutdown or reboot of servers is there any command or script which can tell Unix to use bin/splunk stop command.

For now I think Unix uses kill -9 before kernel is shutdown so I think there might be some alternative to stop Splunk gracefully.

0 Karma
1 Solution

jpalacian
Path Finder
0 Karma

jpalacian
Path Finder
0 Karma

vikram_m
Path Finder

Thanks for your reply J. I found in the docs that firing the reboot or shutdown command Splunk stops itself gracefully.

Also I found command to stop and start it with particular user name. Thanks for the link and clearing my doubts.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...