Security

Splunkweb process on Windows will not start

corners
New Member

Hi

I'm hoping someone can help with this issue.
In my environment I have a splunk search head/indexer server and a deployment/heavy forwarder server. On both servers the splunkd process is starting up no problem.
The splunkweb process however is not restarting.

The servers are windows 2008, splunk is version splunk-5.0.4-172409-x64-release.msi

Restarting from the command line gives -
C:\Program Files\Splunk\bin>splunk start splunkweb debug
Checking http port [8000]: open
Starting splunkweb...
Splunkweb: Starting (pid 5260)

Timed out waiting for splunkweb to start.

The splunkweb process is visible for a few seconds but then disappears.

In the windows application event log we have a python service event

Python could find the service class in the module

: 'module' object has no attribute 'SplunkwebP
ythonService"'

In the windows logs system events we have

The Splunkweb service terminated with service-specific error Incorrect function..
eventid 7024

The web-service.log does not get updated on attempting to restart splunkweb.

Any help would be great.
Thanks
Steve

Tags (1)
0 Karma

corners
New Member

Hi

There is nothing in the splunkd.log around the time of attempting to restart splunkweb

0 Karma

dmaislin_splunk
Splunk Employee
Splunk Employee

And what does the splunkd.log say in $SPLUNK_HOME/var/log/splunk/splunkd.log?

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Where Innovation Takes Flight: The Splunk4Aviation Flight Sim Lands at .conf26

If you hear someone at .conf26 shouting "gear down, GEAR DOWN" across the show floor, you have found us.  The ...

Turn Cisco Telemetry Into Action with Cisco Data Fabric, powered by the Splunk ...

The surge in machine data is already hitting enterprise budgets, and the agentic era will only intensify it. ...

Persistent Queue at TcpOut — One of Splunk's Most Practical Features

Splunk introduced persistent queueing at the tcpout layer as one of the most practical resilience features in ...