Splunk Enterprise

Splunk Enterprise Down After Successfully Installed Enterprise Security

zksvc
Communicator

Hi, i got error after completed set up Enterprise Security on my lab.

First im using Windows but when want to setup Enterprise Security always got 

 

Error in 'essinstall' command: (InstallException) "install_apps" stage failed - Splunkd daemon is not responding: ('Error connecting to /services/admin/localapps: The read operation timed out',)

 

then i want to try install fresh Splunk Enterprise in WSL (in my case Ubuntu 22) i got success install and can doing anything normally.

After that, i try install Enterprise Security again. And now i got successful notification when setup Enterprise Security via WebGUI, but unfortunately when successful restart i can't open Splunk Enterprise 


ES2.png

 

This is my CLI looks like 

ES1.png

 

i cannot see any error in my CLI that's why i ask it here, maybe somebody can help me ?  

 

 

0 Karma
1 Solution

zksvc
Communicator

After finish install don't use SSL and you will get Enterprise Security perfectly my pren 

Danke 🍻

EnterpriseSecurity.png

View solution in original post

0 Karma

zksvc
Communicator

Note i'm using : 

1. Splunk Enterprise Version : 9.3.1

2. Enterprise Security Version : 7.3.2

 

According to this documentation : https://docs.splunk.com/Documentation/VersionCompatibility/current/Matrix/CompatMatrix 

Compatible.png

All is good, but i don't have any idea why this is happening. 

0 Karma

zksvc
Communicator

After finish install don't use SSL and you will get Enterprise Security perfectly my pren 

Danke 🍻

EnterpriseSecurity.png

0 Karma
Get Updates on the Splunk Community!

Now Available: Cisco Talos Threat Intelligence Integrations for Splunk Security Cloud ...

At .conf24, we shared that we were in the process of integrating Cisco Talos threat intelligence into Splunk ...

Preparing your Splunk Environment for OpenSSL3

The Splunk platform will transition to OpenSSL version 3 in a future release. Actions are required to prepare ...

Easily Improve Agent Saturation with the Splunk Add-on for OpenTelemetry Collector

Agent Saturation What and Whys In application performance monitoring, saturation is defined as the total load ...