Splunk AppDynamics

How to start the Elastic Search process?

Nour_Alghamdi
Explorer

How to start the elastic search process. It's not mentioned in the Appd Documentation; Events service installation part. 

Labels (1)
0 Karma

iamryan
Community Manager
Community Manager

Hi @Nour.Alghamdi,

Did you ever get a solution from Support? I did hear back from Docs and this is what they told me.

"Events service will take care of bringing up the elastic search"

0 Karma

iamryan
Community Manager
Community Manager

Hi @Nour.Alghamdi,

Thanks for letting me know you created a Support ticket. They should be able to take care of you. Can you please share what the solution was as a reply to this post, thanks!

0 Karma

iamryan
Community Manager
Community Manager

Hi @Nour.Alghamdi,

Thanks for sharing the Doc link. Just to be clear, you found the solution and you no longer need help? 

0 Karma

Nour_Alghamdi
Explorer

Yes Thanks Ryan,

now we have another problem with the elasticsearch, it gets crashes on memory usage. head hs_err_pid512833.log
#
# There is insufficient memory for the Java Runtime Environment to continue.
# Native memory allocation (mmap) failed to map 16384 bytes for committing reserved memory.
# Possible reasons:
# The system is out of physical RAM or swap space
# The process is running with CompressedOops enabled, and the Java Heap may be blocking the growth of the native heap
# Possible solutions:
# Reduce memory load on the system
# Increase physical memory or swap space
# Check if swap backing store is full

so what should be our memory GB to run the ES

[Internal AppD Support ticket #386641]

0 Karma

Nour_Alghamdi
Explorer

Hi Ryan,

Please find the link:

https://docs.appdynamics.com/appd/onprem/latest/en/events-service-deployment/install-the-events-serv...

Tell me where to find the helpful information, After 10 hours of troubleshooting we found that we need to set the following variables:
export JAVA_HOME={Installation dir}/product/events-service/processor/jre/bin
export INSTALL_BOOTSTRAP_MASTER_ES8=true

Thanks for your consideration.

Regards

iamryan
Community Manager
Community Manager

Hi @Nour.Alghamdi,
Can you share what documentation you were looking at? I'll share it with the Docs team to see if we can get changes made to it. 
In the meantime, I'm also looking around to see what I can find. 

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

May 2026 Splunk Expert Sessions: Security & Observability

Level Up Your Operations: May 2026 Splunk Expert Sessions Whether you are refining your security posture or ...

Network to App: Observability Unlocked [May & June Series]

In today’s digital landscape, your environment is no longer confined to the data center. It spans complex ...

SPL2 Deep Dives, AppDynamics Integrations, SAML Made Simple and Much More on Splunk ...

Splunk Lantern is Splunk’s customer success center that provides practical guidance from Splunk experts on key ...