Monitoring Splunk

when splunk crash,how can i got the information

Communicator

Sometimes, i found splunk will crash.
I want to konw why it crash, how can i got the log?

Tags (1)
0 Karma

Champion

If you install the Splunk on Splunk app it provides a helpful shortcut and dashboard to view crash logs which you can then send onto support with a diag if it doesn't appear to be anything preventable or caused by any local factors 🙂

http://splunk-base.splunk.com/apps/29008/sos-splunk-on-splunk

Builder

Which operating system Perlish? For Linux I believe the files go in $SPLUNK_HOME$\var\log\splunk

Ultra Champion

The crash logs would be called 'crash-yyyy-mm-dd-HH:MM:SS.log'.