Splunk Search

Why is Splunk Service not starting with 'authDb' error?

NicholasLeader
New Member

Hi - any idea why my Splunk service is failing with this error?

What is 'authDb'?

~]# service splunk start
Starting Splunk...

Splunk> CSI: Logfiles.

Checking prerequisites...
Checking http port [8000]: open
Checking mgmt port [8089]: open
Checking appserver port [127.0.0.1:8065]: open
Checking kvstore port [8191]: open
Checking configuration... Done.
Creating: /mnt/splunk_hot//authDb
Warning: cannot create "/mnt/splunk_hot//authDb"

Tags (1)
0 Karma

davpx
Communicator

It would seem Splunk does not have permissions to write. Confirm the user Splunk runs as has ownership of the installation and that there are no storage issues.

chown -R splunk:splunk /mnt/*

Get Updates on the Splunk Community!

Federated Search for Amazon S3 | Key Use Cases to Streamline Compliance Workflows

Modern business operations are supported by data compliance. As regulations evolve, organizations must ...

New Dates, New City: Save the Date for .conf25!

Wake up, babe! New .conf25 dates AND location just dropped!! That's right, this year, .conf25 is taking place ...

Introduction to Splunk Observability Cloud - Building a Resilient Hybrid Cloud

Introduction to Splunk Observability Cloud - Building a Resilient Hybrid Cloud  In today’s fast-paced digital ...