Monitoring Splunk

Stop splunk gracefully during system shutdown or reboot - RESOLVED

vikram_m
Path Finder

As the indexers and search heads are in cluster and on Unix OS, whenever there is a proper shutdown or reboot of servers is there any command or script which can tell Unix to use bin/splunk stop command.

For now I think Unix uses kill -9 before kernel is shutdown so I think there might be some alternative to stop Splunk gracefully.

0 Karma
1 Solution

jpalacian
Path Finder
0 Karma

jpalacian
Path Finder
0 Karma

vikram_m
Path Finder

Thanks for your reply J. I found in the docs that firing the reboot or shutdown command Splunk stops itself gracefully.

Also I found command to stop and start it with particular user name. Thanks for the link and clearing my doubts.

0 Karma
Get Updates on the Splunk Community!

Splunk + ThousandEyes: Correlate frontend, app, and network data to troubleshoot ...

 Are you tired of troubleshooting delays caused by siloed frontend, application, and network data? We've got a ...

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

🔐 Trust at Every Hop: How mTLS in Splunk Enterprise 10.0 Makes Security Simpler

From Idea to Implementation: Why Splunk Built mTLS into Splunk Enterprise 10.0  mTLS wasn’t just a checkbox ...