Security

What are the reasons to clear the search-head splunkweb cache ?

yannK
Splunk Employee
Splunk Employee

In the past, I solved browser javascript issues by clearing the web server cache on the search-head.

  1. go to the search-head in $SPLUNK_HOME/var/run/splunk/appserver
  2. clear the folder (can be done while splunk is running)
  3. go to the web interface, and refresh
  4. if needed, clear the browser cache too
  5. verify that the server cache has been repopulated on the search0head (sanity check)

It was because an upgrade change the javascripts, but the clients was still using the old one.
When can I tell that It's useful to do so ?

Tags (2)
1 Solution

jkat54
SplunkTrust
SplunkTrust

https://answers.splunk.com/answers/24407/application-js-not-loading.html

Try using the bump endpoint, and then pressing ctrl + f5 in your browser to pull all web resources from the server.

 http://<your host and port>/en-US/_bump

You'll want to do this anytime you modify items that can be cached... (pretty much everything on the page)... images, js, cookies, html, etc.

View solution in original post

jkat54
SplunkTrust
SplunkTrust

https://answers.splunk.com/answers/24407/application-js-not-loading.html

Try using the bump endpoint, and then pressing ctrl + f5 in your browser to pull all web resources from the server.

 http://<your host and port>/en-US/_bump

You'll want to do this anytime you modify items that can be cached... (pretty much everything on the page)... images, js, cookies, html, etc.

Get Updates on the Splunk Community!

Splunk Observability Cloud | Unified Identity - Now Available for Existing Splunk ...

Raise your hand if you’ve already forgotten your username or password when logging into an account. (We can’t ...

Index This | How many sides does a circle have?

February 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...

Registration for Splunk University is Now Open!

Are you ready for an adventure in learning?   Brace yourselves because Splunk University is back, and it's ...