Splunk Enterprise

Status of splunk offline

bsrikanthreddy5
Path Finder

Hi, 

I ran "splunk offline --enforce-counts" command on one of the indexer servers in a multisite cluster. it has been over a day. I would like to know the status or progress of my offline command.

Is there a way to know status or progress?

Labels (1)
Tags (1)
0 Karma
1 Solution

scelikok
SplunkTrust
SplunkTrust

I cannot test on my environment but I think you should be able to see on Cluster Master - Indexer clustering | Bucket Status fixing activities. Although it will not show you estimated recovery time, but you can monitor how many buckets are waiting for fix.

If this reply helps you an upvote and "Accept as Solution" is appreciated.

View solution in original post

scelikok
SplunkTrust
SplunkTrust

@bsrikanthreddy5, you can view the status on Cluster Master - Indexer clustering dashboard. The state should be shown as GracefulShutdown after the indexer decommissioned.

If this reply helps you an upvote and "Accept as Solution" is appreciated.
0 Karma

bsrikanthreddy5
Path Finder

@scelikok I was looking to know the progress, I mean how many buckets or data size in GB or MB are still pending to replicate from the indexer where I ran splunk offline command

0 Karma

scelikok
SplunkTrust
SplunkTrust

I cannot test on my environment but I think you should be able to see on Cluster Master - Indexer clustering | Bucket Status fixing activities. Although it will not show you estimated recovery time, but you can monitor how many buckets are waiting for fix.

If this reply helps you an upvote and "Accept as Solution" is appreciated.
Get Updates on the Splunk Community!

What's new in Splunk Cloud Platform 9.1.2312?

Hi Splunky people! We are excited to share the newest updates in Splunk Cloud Platform 9.1.2312! Analysts can ...

What’s New in Splunk Security Essentials 3.8.0?

Splunk Security Essentials (SSE) is an app that can amplify the power of your existing Splunk Cloud Platform, ...

Let’s Get You Certified – Vegas-Style at .conf24

Are you ready to level up your Splunk game? Then, let’s get you certified live at .conf24 – our annual user ...