Security

Changing Management port from 8089

chimbudp
Contributor

Today , i got an Error -


The splunkd daemon cannot be reached by splunkweb. Check that there are no blocked network ports or that splunkd is still running

So , i Changed the management port from 8089 to 8090 ... Now its working fine.
Is there any other places i need to update this new Change ?
What is the effect if i suddenly Change my mgmt port to a new port ?

please help..

0 Karma

kristian_kolb
Ultra Champion

The management port is used for several different things;

-distributed search (indexers will receive search jobs on this port)
-deployment traffic (the deployment server listens on the mgmt port)
-searching (local splunkweb -> local splunkd communication)

Incorrectly changing the management port in some part of your splunk landscape, can cause some or all of the above functions to fail.

/K

0 Karma

kristian_kolb
Ultra Champion

Assume you meant to write "to 8090 from 8089". Yes this will most likely not cause trouble in a single splunk scenario. Since Splunk prompts you to change the port, it'll hopefully make any other required changes, such as CLI->splunkd or splunkweb->splunkd.

However, if this splunk instance also acts as a deployment server, you'll need to update all deployment-clients to reflect the new config.

The same applies for any search head (if this is an indexer).

The questions is why the port is blocked. Is it used by any other process, or could it be some remnants of a previous splunk crash?

/K

0 Karma

chimbudp
Contributor

I have Changed the mgmt port via Command prompt. While trying to restart Splunkd. It shown , the management is blocked. Do u want to configure some other port ?: Y/N
So , i change to 8089 from 8089 . Was this okay ?

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Observability Simplified: Combining User Experience, Application Performance & ...

Tech Talk Observability Simplified: Combining User Experience, Application Performance & Network ...

Event Series May & June: From Network Visibility to Service Intelligence

Unifying the Network: Moving from Alert Noise to Service Intelligence with Splunk ITSI In today’s hybrid ...