Splunk Enterprise

An error occurred adding 2 indexers with cluster master.

Deshcyber
Observer

ind1.pngind2.pngThe error is  ;- (

Clustering: Peer Node
Tags (2)
0 Karma

Deshcyber
Observer

ok sir. Thank you. Now i have to add more one INDEX ?? indexer 3 right?

 

0 Karma

isoutamo
SplunkTrust
SplunkTrust

Hi

Not index you must add more indexer nodes.

https://docs.splunk.com/Documentation/Splunk/8.2.2/Indexer/Aboutclusters

r. Ismo

isoutamo
SplunkTrust
SplunkTrust

Hi

What are your search and replication factor on your cluster (maybe 2 and 3)? As you have only one node active in this cluster it cannot store enough copies to be a valid state. You must add more nodes to this cluster to get the valid state or reduce both SF and RF to 1 and restart it again.

r. Ismo

Get Updates on the Splunk Community!

Observe and Secure All Apps with Splunk

  Join Us for Our Next Tech Talk: Observe and Secure All Apps with SplunkAs organizations continue to innovate ...

Splunk Decoded: Business Transactions vs Business IQ

It’s the morning of Black Friday, and your e-commerce site is handling 10x normal traffic. Orders are flowing, ...

Fastest way to demo Observability

I’ve been having a lot of fun learning about Kubernetes and Observability. I set myself an interesting ...