Splunk Search

Splunk lookup

santhipriya
Engager

I have a 3 node search head cluster and distributed indexers we are getting below error when running any type of search . suggest any ways to avoid it

error: (indexers)..........of 41 peers omitted] Could not load lookup=LOOKUP-connect_glpi

Labels (1)
0 Karma
1 Solution

gcusello
SplunkTrust
SplunkTrust

Hi @santhipriya ,

good for you, see next time!

let me know if I can help you more, or, please, accept one answer for the other people of Community.

Ciao and happy splunking

Giuseppe

P.S.: Karma Points are appreciated 😉

View solution in original post

0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @santhipriya ,

the message is saying the there's a missed loookup (probaly automatic) in your search head cluster.

you have to understand in which app it's located and then create or disable it.

Ciao.

Giuseppe

0 Karma

santhipriya
Engager

Hi @gcusello 

I was able to find out those in automatic lookups and deleted ,the errors are fixed now . Thanks.!

0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @santhipriya ,

good for you, see next time!

Ciao and happy splunking

Giuseppe

P.S.: Karma Points are appreciated 😉

0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @santhipriya ,

good for you, see next time!

let me know if I can help you more, or, please, accept one answer for the other people of Community.

Ciao and happy splunking

Giuseppe

P.S.: Karma Points are appreciated 😉

0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.

Can’t make it to .conf25? Join us online!

Get Updates on the Splunk Community!

Can’t Make It to Boston? Stream .conf25 and Learn with Haya Husain

Boston may be buzzing this September with Splunk University and .conf25, but you don’t have to pack a bag to ...

Splunk Lantern’s Guide to The Most Popular .conf25 Sessions

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Unlock What’s Next: The Splunk Cloud Platform at .conf25

In just a few days, Boston will be buzzing as the Splunk team and thousands of community members come together ...