We have two search heads. One of them is a deployment server containing mostly apps and the other is dedicated to Enterprise Security/other security stuff.
On the dedicated ES server, we just upgraded from v5.1 to 5.2 and are being presented with the following message :
"Installer was unable to start. Error in 'essinstall' command: (InstallException) Install cannot continue because some apps are managed via a deployment server:...."
and then lists a handful of apps from the deployment server.
On the deployment server/other apps server, we received this message:
"Unable to initialize modular input "ess_content_importer" defined inside the app "SplunkEnterpriseSecuritySuite": Introspecting scheme=ess_content_importer: script running failed (exited with code 1)."
Any ideas on how to resolve this?
Thank you in advance!
For the first issue, see http://docs.splunk.com/Documentation/ES/5.2.0/Install/DeploymentPlanning#Using_the_deployment_server...
The second issue might not be an issue.
For the first issue, see http://docs.splunk.com/Documentation/ES/5.2.0/Install/DeploymentPlanning#Using_the_deployment_server...
The second issue might not be an issue.