Splunk Enterprise

Splunk Enterprise Down After Successfully Installed Enterprise Security

zksvc
Path Finder

Hi, i got error after completed set up Enterprise Security on my lab.

First im using Windows but when want to setup Enterprise Security always got 

 

Error in 'essinstall' command: (InstallException) "install_apps" stage failed - Splunkd daemon is not responding: ('Error connecting to /services/admin/localapps: The read operation timed out',)

 

then i want to try install fresh Splunk Enterprise in WSL (in my case Ubuntu 22) i got success install and can doing anything normally.

After that, i try install Enterprise Security again. And now i got successful notification when setup Enterprise Security via WebGUI, but unfortunately when successful restart i can't open Splunk Enterprise 


ES2.png

 

This is my CLI looks like 

ES1.png

 

i cannot see any error in my CLI that's why i ask it here, maybe somebody can help me ?  

 

 

0 Karma
1 Solution

zksvc
Path Finder

After finish install don't use SSL and you will get Enterprise Security perfectly my pren 

Danke 🍻

EnterpriseSecurity.png

View solution in original post

0 Karma

zksvc
Path Finder

Note i'm using : 

1. Splunk Enterprise Version : 9.3.1

2. Enterprise Security Version : 7.3.2

 

According to this documentation : https://docs.splunk.com/Documentation/VersionCompatibility/current/Matrix/CompatMatrix 

Compatible.png

All is good, but i don't have any idea why this is happening. 

0 Karma

zksvc
Path Finder

After finish install don't use SSL and you will get Enterprise Security perfectly my pren 

Danke 🍻

EnterpriseSecurity.png

0 Karma
Get Updates on the Splunk Community!

Continuing Innovation & New Integrations Unlock Full Stack Observability For Your ...

You’ve probably heard the latest about AppDynamics joining the Splunk Observability portfolio, deepening our ...

Monitoring Amazon Elastic Kubernetes Service (EKS)

As we’ve seen, integrating Kubernetes environments with Splunk Observability Cloud is a quick and easy way to ...

Cloud Platform & Enterprise: Classic Dashboard Export Feature Deprecation

As of Splunk Cloud Platform 9.3.2408 and Splunk Enterprise 9.4, classic dashboard export features are now ...