Hello @rakesh44
though cron running as root, the script used for running log rotation script might be running as other user(non root). /var/log usually owned by root.
I have my own VM running locally, have two users root, lkoppolu. With lkoppolu I cant even access /var/log. change permissions for the user. It will work
... View more
Hi,
I want to use ITSI sandbox, I used link https://www.splunk.com/page/sign_up/itsi_sandbox?redirecturl=%2Fgetsplunk%2Fitsi_sandbox
got error message below.
"You have exceeded the total number of Splunk IT Service Intelligence Online Sandboxes allowed. Each customer is limited to three free Splunk IT Service Intelligence Online Sandboxes."
Any one know how to reset its limit?
Thank you,
Lakshmi K
... View more
Hi,
https://answers.splunk.com/answers/335162/how-do-i-troubleshoot-why-splunk-has-stopped-index.html
Mus answered this
in
htheretp://localhost:8000/en-US/manager/search/apps/local
forward enabled. Disabled it. Restarted splunk.
Issue resolved
... View more
http://localhost:8000/en-US/manager/search/apps/local
SplunkForwarder
SplunkLightForwarder
enabled.
As its my local installation, I moved the local folder from C:\Splunk\etc\apps\SplunkForwarder\ away, restarted splunk. Started working.
Mus anwered earlier
... View more
Hi,
Just now installed splunk.6.6 on Windows10 and loggedin. Uninstalled it.
installed again with new location for SPLUNK_HOME to c:\splunk\
Installation is successful, created a new user, changed password search query index=_internal sourcetype=splunkd says no results.
tried with index=* , again no results.
time window changed to 24 hours by default, instead of All time.
Regards,
Lakshmi K
... View more