Splunk Search

Running queries not working at all


I created a standalone splunk container on openshift container platform with the help of "splunk operator for kubernetes". unfortunately I can't run splunk queries.

The following error occures: job terminated unexpectedly. The search job has failed due to an error. You may be able to view the job in the job inspector.

When I enter the the job inspector and search for errors with ctrl+f I find only something like: "Error ScopedAliveProcessToken, unable to create FIFO, path="/opt/splunk/var/run/splunk/dispatch/1684409027.39/alive.token", permission denied

pleaseeeee help me I am desperate

Labels (1)
Tags (1)
0 Karma
Get Updates on the Splunk Community!

Index This | Why do they call it hyper text?

November 2023 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...

State of Splunk Careers 2023: Career Resilience and the Continued Value of Splunk

For the past three years, Splunk has partnered with Enterprise Strategy Group to conduct a survey that gauges ...

The Great Resilience Quest: 9th Leaderboard Update

The ninth leaderboard update (11.9-11.22) for The Great Resilience Quest is out >> Kudos to all the ...