Monitoring Splunk

when splunk crash,how can i got the information


Sometimes, i found splunk will crash.
I want to konw why it crash, how can i got the log?

If you install the Splunk on Splunk app it provides a helpful shortcut and dashboard to view crash logs which you can then send onto support with a diag if it doesn't appear to be anything preventable or caused by any local factors 🙂


Which operating system Perlish? For Linux I believe the files go in $SPLUNK_HOME$\var\log\splunk

The crash logs would be called 'crash-yyyy-mm-dd-HH:MM:SS.log'.