We had a Splunk indexer crash out of nowhere, and this is the message I received before the crash in the logs.
Encountered S2S Exception=Unexpected duplicate in addUncommittedEventId eventid=57 received from for data received from src=*.
What is the cause of this?
Crashes should be reported to Splunk Support.
Crashes should be reported to Splunk Support.