Splunk Search

Problem replicating config (bundle) to search peer

splunkcol
Builder

hi

can someone help me with this error message?

Sin título.jpg

will it be because of this file and its size? can i delete it?

Screenshot_3.png

Labels (1)
Tags (2)
0 Karma

thambisetty
SplunkTrust
SplunkTrust

replicating 265 MB should not be a problem. 

can you check the connectivity of search peer in search head, settings -> Distributed search -> search peers.

is status healthy?

 

————————————
If this helps, give a like below.
0 Karma

splunkcol
Builder

Hi,

It is fine but I have seen it several times in "failed" state

It's even intermittent between "Successful" and "failed"

splunkcol_0-1598720885025.png

@thambisetty  what do you think is the cause?

0 Karma

splunkcol
Builder

Sorry for the insistence, could someone give me recommendations? 😭

0 Karma

isoutamo
SplunkTrust
SplunkTrust

Did this happened regularly?

Which kind of environment you have?

Have you MC (monitoring console) in use so you could check what there happened.

r. Ismo

0 Karma

splunkcol
Builder

Did this happened regularly?
Yes

Which kind of environment you have?

2 Search Head
2 Indexers
2 Heavy Forwarder

I have access to the monitor, but there are several menus and submenu, which option should I check exactly?

Just as I investigated the problem is presented because the file called bundle is very heavy which causes the error message, my question at this time is if this bundle file can be debugged?

 

 

 

Tags (1)
0 Karma

splunkcol
Builder

hi @isoutamo 

I will read each thread and inform you.

Thank you

0 Karma
Get Updates on the Splunk Community!

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...

Operationalizing Entity Risk Score with Enterprise Security 8.3+

Overview Enterprise Security 8.3 introduces a powerful new feature called “Entity Risk Scoring” (ERS) for ...

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...