Splunk Search

Unable to stat the splunk indexer missing: /app/splunk/openssl directory

Mayanakhan
Explorer

Hi,

We are unable to start the our one of the indexer in cluster getting the below error. Can we copy the directory "/app/splunk/openssl" from any other indexer in cluster and start? is that fine or we need to follow ant other approach?

Cannot start; missing essential directory: /app/splunk/openssl
        Checking critical directories...Validating databases (splunkd validatedb) failed with code '11'.  If you cannot resolve the issue(s) above after consulting documentation, please file a case online at http://www.splunk.com/page/submit_issue
0 Karma
1 Solution

harsmarvania57
Ultra Champion

Hi,

Yes, you can copy it from other Splunk Enterprise Instance but make sure that you copy it from same version of Splunk Enterprise instance.

After copying directory make sure that permissions are also correct.

View solution in original post

harsmarvania57
Ultra Champion

Hi,

Yes, you can copy it from other Splunk Enterprise Instance but make sure that you copy it from same version of Splunk Enterprise instance.

After copying directory make sure that permissions are also correct.

Get Updates on the Splunk Community!

Fueling your curiosity with new Splunk ILT and eLearning courses

At Splunk Education, we’re driven by curiosity—both ours and yours! That’s why we’re committed to delivering ...

Splunk AI Assistant for SPL 1.1.0 | Now Personalized to Your Environment for Greater ...

Splunk AI Assistant for SPL has transformed how users interact with Splunk, making it easier than ever to ...

Unleash Unified Security and Observability with Splunk Cloud Platform

     Now Available on Microsoft AzureOn Demand Now Step boldly into the AI revolution with enhanced security ...