Security

Splunk port issue

LogUx
Motivator

Hello SPlunkers!!

I have upgraded my HF from 8.0.0 to 8.1.2, while upgradation everything is working fine. But the issue is the i am not able to open the server on UI on port 8000.

tcp 0 0 0.0.0.0:8000 0.0.0.0:* LISTEN 2170/splunkd

port 8000 is also working fine.

But the issue is that whenever i have tried to pen the server from Ui it throughing bad request error.

 

What the things i have done yet.

1. copy the web.conf file from the system default to system local

2. change the splunk user cmod splunk:splunk /opt/splunk

But still the issue is persist please help me to get it resolve.

 

 

0 Karma

Siddharth
Path Finder

Kill the splunk service and restart the server It have happened with me and worked after server restart . Please do check all the crontab running on the server before reboot it will take around 4-5 mins 

To reboot switch to sudo account then use the command  "reboot"

0 Karma

KulvinderSingh
Path Finder

I think I know what went wrong

chmod splunk:splunk  -R /opt/splunk

you forgot to add change permissions on directory level you need to add -R to the command to add permissions recursively.

hope that helps.

 

Tags (1)
0 Karma

isoutamo
SplunkTrust
SplunkTrust
What you can found from log files e.g. splunkd.log at /opt/splunk/var/log/splunk?
0 Karma

LogUx
Motivator

There is no error as such in splunkd.log. But my UI is not working

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Your Feedback. Our Roadmap. Visit the PX Feedback Booth at .conf26

You use Splunk every day, come and help shape what's next.  Save Your Seat: Product-Focused Sessions at ...

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...

Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas

Watch Now Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas     Do you ever feel ...