Splunk Enterprise

Why is Splunk service not working?

rpatel
Loves-to-Learn Lots

I am new to Splunk and getting below error seems like we started getting this error after yum install update.

Any help or suggestion is really appreciated.

[root@XXXXXX ~]# systemctl status Splunkd.service
● Splunkd.service - Systemd service file for Splunk, generated by 'splunk enable boot-start'
Loaded: loaded (/etc/systemd/system/Splunkd.service; enabled; vendor preset: disabled)
Active: failed (Result: exit-code) since Sun 2023-09-17 13:46:55 MST; 3h 58min ago
Process: 3466 ExecStartPost=/bin/bash -c chown -R splunk:splunk /sys/fs/cgroup/memory/system.slice/Splunkd.service (code=exited, status=0/SUCCESS)
Process: 3464 ExecStartPost=/bin/bash -c chown -R splunk:splunk /sys/fs/cgroup/cpu/system.slice/Splunkd.service (code=exited, status=0/SUCCESS)
Process: 3463 ExecStart=/opt/splunk/bin/splunk _internal_launch_under_systemd (code=exited, status=1/FAILURE)
Main PID: 3463 (code=exited, status=1/FAILURE)

Sep 17 13:46:55 XXX.xx.xxx systemd[1]: Splunkd.service: Service RestartSec=100ms expired, scheduling restart.
Sep 17 13:46:55 XXX.xx.xxx systemd[1]: Splunkd.service: Scheduled restart job, restart counter is at 5.
Sep 17 13:46:55 XXX.xx.xxx systemd[1]: Stopped Systemd service file for Splunk, generated by 'splunk enable boot-start'.
Sep 17 13:46:55 XXX.xx.xxx systemd[1]: Splunkd.service: Start request repeated too quickly.
Sep 17 13:46:55 XXX.xx.xxx systemd[1]: Splunkd.service: Failed with result 'exit-code'.
Sep 17 13:46:55 XXX.xx.xxx systemd[1]: Failed to start Systemd service file for Splunk, generated by 'splunk enable boot-start'.

 

 [splunk@xxx.xx.xxx bin]$ ./splunk enable boot start
/opt/splunk/bin/splunkd: symbol lookup error: /opt/splunk/bin/splunkd: undefined symbol: SSL_load_error_strings


/opt/splunk/bin/splunkd: symbol lookup error: /opt/splunk/bin/splunkd: undefined symbol: SSL_load_error_strings


/opt/splunk/bin/splunkd: symbol lookup error: /opt/splunk/bin/splunkd: undefined symbol: SSL_load_error_strings


Did not find "disabled" setting of "kvstore" stanza in server bundle.


/opt/splunk/bin/splunkd: symbol lookup error: /opt/splunk/bin/splunkd: undefined symbol: SSL_load_error_strings


/opt/splunk/bin/splunkd: symbol lookup error: /opt/splunk/bin/splunkd: undefined symbol: SSL_load_error_strings


splunkd: symbol lookup error: splunkd: undefined symbol: SSL_load_error_strings


/opt/splunk/bin/splunkd: symbol lookup error: /opt/splunk/bin/splunkd: undefined symbol: SSL_load_error_strings


"/opt/splunk/bin/splunkd" returned 127

Tags (1)
0 Karma
Get Updates on the Splunk Community!

Combine Multiline Logs into a Single Event with SOCK - a Guide for Advanced Users

This article is the continuation of the “Combine multiline logs into a single event with SOCK - a step-by-step ...

Everything Community at .conf24!

You may have seen mention of the .conf Community Zone 'round these parts and found yourself wondering what ...

Index This | I’m short for "configuration file.” What am I?

May 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with a Special ...