Splunk Search

Unable to stat the splunk indexer missing: /app/splunk/openssl directory

Mayanakhan
Explorer

Hi,

We are unable to start the our one of the indexer in cluster getting the below error. Can we copy the directory "/app/splunk/openssl" from any other indexer in cluster and start? is that fine or we need to follow ant other approach?

Cannot start; missing essential directory: /app/splunk/openssl
        Checking critical directories...Validating databases (splunkd validatedb) failed with code '11'.  If you cannot resolve the issue(s) above after consulting documentation, please file a case online at http://www.splunk.com/page/submit_issue
0 Karma
1 Solution

harsmarvania57
Ultra Champion

Hi,

Yes, you can copy it from other Splunk Enterprise Instance but make sure that you copy it from same version of Splunk Enterprise instance.

After copying directory make sure that permissions are also correct.

View solution in original post

harsmarvania57
Ultra Champion

Hi,

Yes, you can copy it from other Splunk Enterprise Instance but make sure that you copy it from same version of Splunk Enterprise instance.

After copying directory make sure that permissions are also correct.

Get Updates on the Splunk Community!

Introducing the 2024 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...

Introducing the 2024 Splunk MVPs!

We are excited to announce the 2024 cohort of the Splunk MVP program. Splunk MVPs are passionate members of ...

Splunk Custom Visualizations App End of Life

The Splunk Custom Visualizations apps End of Life for SimpleXML will reach end of support on Dec 21, 2024, ...