We are trying to run Splunk Enterprise on Kubernetes. We have a Helm chart that uses the official docker image (currently 7.1.2). We are using the following env vars to initialize Splunk:
env:
- name: SPLUNK_START_ARGS
value: "--accept-license --answer-yes --seed-passwd ourpassword"
- name: SPLUNK_USER
value: root
- name: SPLUNK_ENABLE_LISTEN
value: "9997"
- name: SPLUNK_ADD
value: tcp 1514
Splunk appears to start and displays the message
Waiting for web server at http://127.0.0.1:8000 to be available..... Done
If you get stuck, we're here to help.
Look for answers here: http://docs.splunk.com
The Splunk web interface is at http://container-name:8000
and then a moment later we get the message
Login failed
Stopping splunkd...
Shutting down. Please wait, as this may take a few minutes.
...
Stopping splunk helpers...
Done.
What login is failing? What do we need to do to correct this?
... View more