Reporting

Many bad alloc errors, dispatch directory fills up and does not free up space for other jobs

Zarack
Engager

I have a SH cluster with 3 servers, but I'm getting a lot of replication errors because the datamodels fill up the dispatch directory.
How are jobs released from dispatch? Are files cleaned automatically?

There are many bad alloc errors.

Zarack_1-1699465442059.png

Thanks.

 

Labels (3)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

Jobs should be removed from the dispatch directory automatically once they expire.

Some workarounds to consider:

  • Increase the size of the dispatch directory
  • Reduce how frequently datamodel accelerations run
  • Disable unused DMAs
---
If this reply helps you, Karma would be appreciated.
0 Karma
Get Updates on the Splunk Community!

Preparing your Splunk Environment for OpenSSL3

The Splunk platform will transition to OpenSSL version 3 in a future release. Actions are required to prepare ...

Deprecation of Splunk Observability Kubernetes “Classic Navigator” UI starting ...

Access to Splunk Observability Kubernetes “Classic Navigator” UI will no longer be available starting January ...

Now Available: Cisco Talos Threat Intelligence Integrations for Splunk Security Cloud ...

At .conf24, we shared that we were in the process of integrating Cisco Talos threat intelligence into Splunk ...