From Splunk Web, when I run a search, I receive the following message
Search not executed: The minimum free disk space (5000MB) reached for /opt/splunk/var/run/splunk/dispatch
In Settings->ServerSettings->GeneralSettings, I have the Splunk Search Head host configured.
Splunk Search Head is having a total disk capacity of 30GB and currently 25GB is used up.
My setup has
1) One master node
2) One Search head
3) Three Peer nodes
Does the above error mean that, I am trying to index the logs of Search Head host and hence I am running short of disk space?
/volr/splunk/defaultdb/db/ seems to use 12GB of space and I believe that it is the index data.
... View more