Splunk Enterprise

An error occurred adding 2 indexers with cluster master.

Deshcyber
Observer

ind1.pngind2.pngThe error is  ;- (

Clustering: Peer Node
Tags (2)
0 Karma

Deshcyber
Observer

ok sir. Thank you. Now i have to add more one INDEX ?? indexer 3 right?

 

0 Karma

isoutamo
SplunkTrust
SplunkTrust

Hi

Not index you must add more indexer nodes.

https://docs.splunk.com/Documentation/Splunk/8.2.2/Indexer/Aboutclusters

r. Ismo

isoutamo
SplunkTrust
SplunkTrust

Hi

What are your search and replication factor on your cluster (maybe 2 and 3)? As you have only one node active in this cluster it cannot store enough copies to be a valid state. You must add more nodes to this cluster to get the valid state or reduce both SF and RF to 1 and restart it again.

r. Ismo

Get Updates on the Splunk Community!

Let’s Talk Terraform

If you’re beyond the first-weeks-of-a-startup stage, chances are your application’s architecture is pretty ...

Cloud Platform | Customer Change Announcement: Email Notification is Available For ...

The Notification Team is migrating our email service provider. As the rollout progresses, Splunk has enabled ...

Save the Date: GovSummit Returns Wednesday, December 11th!

Hey there, Splunk Community! Exciting news: Splunk’s GovSummit 2024 is returning to Washington, D.C. on ...