Splunk Enterprise

Splunk Enterprise Down After Successfully Installed Enterprise Security

zksvc
Contributor

Hi, i got error after completed set up Enterprise Security on my lab.

First im using Windows but when want to setup Enterprise Security always got 

 

Error in 'essinstall' command: (InstallException) "install_apps" stage failed - Splunkd daemon is not responding: ('Error connecting to /services/admin/localapps: The read operation timed out',)

 

then i want to try install fresh Splunk Enterprise in WSL (in my case Ubuntu 22) i got success install and can doing anything normally.

After that, i try install Enterprise Security again. And now i got successful notification when setup Enterprise Security via WebGUI, but unfortunately when successful restart i can't open Splunk Enterprise 


ES2.png

 

This is my CLI looks like 

ES1.png

 

i cannot see any error in my CLI that's why i ask it here, maybe somebody can help me ?  

 

 

0 Karma
1 Solution

zksvc
Contributor

After finish install don't use SSL and you will get Enterprise Security perfectly my pren 

Danke 🍻

EnterpriseSecurity.png

View solution in original post

0 Karma

zksvc
Contributor

Note i'm using : 

1. Splunk Enterprise Version : 9.3.1

2. Enterprise Security Version : 7.3.2

 

According to this documentation : https://docs.splunk.com/Documentation/VersionCompatibility/current/Matrix/CompatMatrix 

Compatible.png

All is good, but i don't have any idea why this is happening. 

0 Karma

zksvc
Contributor

After finish install don't use SSL and you will get Enterprise Security perfectly my pren 

Danke 🍻

EnterpriseSecurity.png

0 Karma
Get Updates on the Splunk Community!

Fun with Regular Expression - multiples of nine

Fun with Regular Expression - multiples of nineThis challenge was first posted on Slack #regex channel ...

[Live Demo] Watch SOC transformation in action with the reimagined Splunk Enterprise ...

Overwhelmed SOC? Splunk ES Has Your Back Tool sprawl, alert fatigue, and endless context switching are making ...

What’s New & Next in Splunk SOAR

Security teams today are dealing with more alerts, more tools, and more pressure than ever.  Join us on ...