Refine your search:

When running trying to run a search via the CLI (Redhat Linux) I get the following message:

"Splunk is not running, and it must be for this operation. To start splunk, run "splunk start"."

However the Splunk is up and running and fully functional via the Webgui. Any ideas on how to get this working?

asked 02 Nov '10, 01:05

mcwomble's gravatar image

mcwomble
87111
accept rate: 0%

Have there been any recent configuration changes to Splunk? Which account started Splunk? Which account owns the files in $SPLUNK_HOME/var/run/splunk?

(02 Nov '10, 03:04) bwooden ♦

Started by root Ownership of $SPLUNK_HOME/var/run/splunk is root

(04 Nov '10, 20:54) mcwomble
Be the first one to answer this question!
toggle preview

Follow this question

Log In to enable email subscriptions

RSS:

Answers

Answers + Comments

Markdown Basics

  • *italic* or _italic_
  • **bold** or __bold__
  • link:[text](http://url.com/ "Title")
  • image?![alt text](/path/img.jpg "Title")
  • numbered list: 1. Foo 2. Bar
  • to add a line break simply add two spaces to where you would like the new line to be.
  • basic HTML tags are also supported

Tags:

×1,651
×111

Asked: 02 Nov '10, 01:05

Seen: 721 times

Last updated: 02 Nov '10, 01:05

Copyright © 2005-2012 Splunk Inc. All rights reserved.