...nvalid entries in
$SPLUNKHOME/etc/system/local/inputs.conf
$SPLUNKHOME/etc/system/local/server.conf
Removing these files and restarting Splunk seems to fix the problem as the files are r...
Hello
I am testing Splunk Enterprise Multi-Site Cluster in my lab. The details of which are mentioned below :
Site1 - Master , Index Peers 1 and 2 , Search Head , and 1 Universal Forwarder.
S...
Hello, How can I change the host name displaying in Splunk with out changing /etc/hostname in linux. I did changed in system/local/inputs.conf under default and /local/server.conf u...
My cluster peers went down after making some changes to indexes.conf on the master and now I am unable to add a peer in our two peer environment. Our Splunk instances are all 5.0.4 running RHEL.
I...
We have a 5 node Search Head Cluster.
The SHC captain generates the following message every 5 seconds:
03-01-2016 09:12:54.909 -0800 ERROR KVStorageProvider - Could not update replica set conf...
...uccessfully deployed on all of them and the inputs.conf and outputs.conf have been manually configured there. These are windows servers. It's very difficult to manage all of these servers m...
I need to migrate my old standalone Splunk License Master to a new server as my old License Master is being decommissioned. I need to do this without interruption to service.
My License Slaves are ...
A forwarder which was working before has stopped for up to a month now. After checking, it is confirmed that the forwarder is correctly configured, the service is running and reporting to the indexer...
...nd it works; however, when we go and look at the cloned images' server.conf file there is no [general] stanza. The cloned images' inputs.conf file does not contain an entry for host under the [d...