Splunk Search

Search process did not exit cleanly, exit_code=255, description="exited with code 255". Please look in search.log

Ashwini008
Builder

Hi,

I am getting the following error on my search head whenever i run query in a newly created app.

  • Search results might be incomplete: the search process on the peer:indexer1 ended prematurely. Check the peer log, such as $SPLUNK_HOME/var/log/splunk/splunkd.log and as well as the search.log for the particular search.
  • [Indexer 1] Search process did not exit cleanly, exit_code=255, description="exited with code 255". Please look in search.log for this peer in the Job Inspector for more info.

In the search.log this is the error"

12-15-2021 05:42:06.881 ERROR dispatchRunner - RunDispatch::runDispatchThread threw error: Application does not exist: 

"

The above error is present for on all four of our indexers.

What is the cause for this? How do we fix this error?

 

Thank You!

Labels (2)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

Did you install the new app on the indexers?  If not, try it.

---
If this reply helps you, Karma would be appreciated.
0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...