Hi,
I copied /etc from a production running 7.0.1 to a dev. server, changed all named to match the new server, then upgraded to 8.0.
Splunk web not running as shown here. The website is not accessible. Hope someone can give me an idea how to fix it. Thank you,
[splunk@spkmsaplv001 bin]$ ./splunk restart
Stopping splunkd...
Shutting down. Please wait, as this may take a few minutes.
....... [ OK ]
Stopping splunk helpers...
[ OK ]
Done.
Splunk> The Notorious B.I.G. D.A.T.A.
Checking prerequisites...
Checking http port [8000]: open
Checking mgmt port [8089]: open
Checking appserver port [127.0.0.1:8065]: open
Checking kvstore port [8191]: open
Checking configuration... Done.
Checking critical directories... Done
Checking indexes...
Validated: _audit _internal _introspection _metrics _telemetry _thefishbucket alexa history main optiv summary
Done
Bypassing local license checks since this instance is configured with a remote license master.
Checking filesystem compatibility... Done
Checking conf files for problems...
Invalid filename value: $SPLUNK_HOME/etc/apps/GoogleAppsForSplunk/lookups/domains.csv in stanza [gapps_domains] in /opt/splunk/etc/master-apps/TA-GSuiteForSplunk/default/transforms.conf, line 16: only filenames are allowed (not paths)
Your indexes and inputs configurations are not internally consistent. For more information, run 'splunk btool check --debug'
Done
Checking default conf files for edits...
Validating installed files against hashes from '/opt/splunk/splunk-8.0.0-1357bef0a7f6-linux-2.6-x86_64-manifest'
All installed files intact.
Done
All preliminary checks passed.
Starting splunk server daemon (splunkd)...
Done
[ OK ]
Waiting for web server at http://127.0.0.1:8000 to be available............................................................................................................................................................................................................................................................................................................ Done
If you get stuck, we're here to help.
Look for answers here: http://docs.splunk.com
The Splunk web interface is at http://spkmsaplv001.uth.tmc.edu:8000
↧