Splunk Enterprise

Splunk Enterprise Down After Successfully Installed Enterprise Security

zksvc
Communicator

Hi, i got error after completed set up Enterprise Security on my lab.

First im using Windows but when want to setup Enterprise Security always got 

 

Error in 'essinstall' command: (InstallException) "install_apps" stage failed - Splunkd daemon is not responding: ('Error connecting to /services/admin/localapps: The read operation timed out',)

 

then i want to try install fresh Splunk Enterprise in WSL (in my case Ubuntu 22) i got success install and can doing anything normally.

After that, i try install Enterprise Security again. And now i got successful notification when setup Enterprise Security via WebGUI, but unfortunately when successful restart i can't open Splunk Enterprise 


ES2.png

 

This is my CLI looks like 

ES1.png

 

i cannot see any error in my CLI that's why i ask it here, maybe somebody can help me ?  

 

 

0 Karma
1 Solution

zksvc
Communicator

After finish install don't use SSL and you will get Enterprise Security perfectly my pren 

Danke 🍻

EnterpriseSecurity.png

View solution in original post

0 Karma

zksvc
Communicator

Note i'm using : 

1. Splunk Enterprise Version : 9.3.1

2. Enterprise Security Version : 7.3.2

 

According to this documentation : https://docs.splunk.com/Documentation/VersionCompatibility/current/Matrix/CompatMatrix 

Compatible.png

All is good, but i don't have any idea why this is happening. 

0 Karma

zksvc
Communicator

After finish install don't use SSL and you will get Enterprise Security perfectly my pren 

Danke 🍻

EnterpriseSecurity.png

0 Karma
Get Updates on the Splunk Community!

Detector Best Practices: Static Thresholds

Introduction In observability monitoring, static thresholds are used to monitor fixed, known values within ...

Expert Tips from Splunk Education, Observability in Action, Plus More New Articles on ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Changes to Splunk Instructor-Led Training Completion Criteria

We’re excited to share an update to our instructor-led training program that enhances the learning experience ...