Hi @mwdbhyat , I know you asked this quite a while ago, but just in case it's still bugging you or others are searching, here's the answer: It's either known issue SPL-182238 (internally referenced), which should be benign in nature. It's a message based on an OS race condition trying to calculate a path size while one of the sub-directories aren't available/readable yet or an issue with corrupt buckets in the environment (a bucket that was attempted to be created and didn’t finish, in which case you could search for them and remove appropriately). You'd typically encounter this after a rolling restart as there could be many buckets being written too and all the buckets are checked. If the message is constantly happening and flooding your logs, then you should notify Splunk Support to review, otherwise it can be ignored and you can make a request of your Splunk Customer Success Team help address the logging of this message.
... View more