Monitoring Splunk

maxfiles in limits.conf

mzorzi
Splunk Employee
Splunk Employee

I can see the maxfiles parameter in $SPLUNK_HOME/etc/system/default/limits.conf for Splunk 4.1.4 , but it is not described anywhere not even in the limits.conf.spec.

Is it the same than max_fds ? Is that something that can be modified manually? The value associated , 64, seems quiet low.

1 Solution

gkanapathy
Splunk Employee
Splunk Employee

It is not the same as max_fd, and please note that it is important to indicate which section of a configuration a parameter is in. It should not be necessary to increase this parameter.

View solution in original post

gkanapathy
Splunk Employee
Splunk Employee

It is not the same as max_fd, and please note that it is important to indicate which section of a configuration a parameter is in. It should not be necessary to increase this parameter.

Get Updates on the Splunk Community!

Building Reliable Asset and Identity Frameworks in Splunk ES

 Accurate asset and identity resolution is the backbone of security operations. Without it, alerts are ...

Cloud Monitoring Console - Unlocking Greater Visibility in SVC Usage Reporting

For Splunk Cloud customers, understanding and optimizing Splunk Virtual Compute (SVC) usage and resource ...

Automatic Discovery Part 3: Practical Use Cases

If you’ve enabled Automatic Discovery in your install of the Splunk Distribution of the OpenTelemetry ...