Splunk Enterprise Security

Error in essinstall command

splunkcol
Builder

Hello

Splunk Enterprise Server 8.0.5

ES: splunk-enterprise-security_620.spl

I proceeded to install exactly as indicated on the page

https://docs.splunk.com/Documentation/ES/6.2.0/Install/InstallEnterpriseSecurity

 

I restart the server and access via web and I see the APP I start the SETUP process and I get the error message

“Error in 'essinstall' command: install_apps failed - Splunkd daemon is not responding: ('Error connecting to /services/apps/local: The read operation timed out',)”

 

I see that other people have presented the same error and a link is shared where they refer to compatibility issues

https://docs.splunk.com/Documentation/VersionCompatibility/current/Matrix/CompatMatrix


compatibility exists but error persists

Labels (2)
Tags (3)
0 Karma
1 Solution

splunkcol
Builder

 

 $SPLUNK_HOME/etc/system/local/default/web.conf and increase the value.

splunkdConnectionTimeout = (default 30 secs) change by 3000

View solution in original post

splunkcol
Builder

 

 $SPLUNK_HOME/etc/system/local/default/web.conf and increase the value.

splunkdConnectionTimeout = (default 30 secs) change by 3000

Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...