Deployment Architecture

Port numbers for Splunk services

vikram_m
Path Finder

Hello Team,

I have a server allocated to me with Splunk I installed on it.

Now I am unable to integrate the Splunk instances together e.g Indexer, Searchhead and get data into Splunk.

When I tried telnet for the Splunk servers on port 8089 and 9997 it is showing me not reachable.

Other than this when I reachedout to the infra team they suggested they have opened the port it is just that the service is not running and that is the reason the port isnot getting telnet and reachable.

I am seeing on the server that Splunk is running fine and so I am confused now is there any other service Splunk runs on 9997 and 8089 port.

Please let me know which services are running on 8089 and 9997 port so that we can get into the root cause get the env up and reporting.

Below are the services I can see running on the Splunk instances I am talking about.

[splunkqaindexer1 ~]$ ps -ef | grep -i splunk
splunk 19521 1 0 Feb14 ? 00:17:35 splunkd -p 8089 restart
splunk 19527 19521 0 Feb14 ? 00:00:28 [splunkd pid=19521] splunkd -p 8089 restart [process-runner]
splunk 19535 19527 0 Feb14 ? 00:08:10 mongod --dbpath=/splunkdata/kvstore/mongo --port=8191 --timeStampFormat=iso8601-utc --smallfiles --oplogSize=200 --keyFile=/splunkdata/kvstore/mongo/splunk.key --setParameter=enableLocalhostAuthBypass=0 --replSet=AB885084-8D23-43CC-B868-8C1905EB56CF --sslAllowInvalidHostnames --sslMode=preferSSL --sslPEMKeyFile=/opt/splunk/etc/auth/server.pem --sslPEMKeyPassword=xxxxxxxx --nounixsocket --noscripting
splunk 19642 19527 0 Feb14 ? 00:05:59 /opt/splunk/bin/python -O /opt/splunk/lib/python2.7/site-packages/splunk/appserver/mrsparkle/root.py --proxied=127.0.0.1,8065,8000
splunk 19699 19527 0 Feb14 ? 00:01:43 /opt/splunk/bin/splunkd instrument-resource-usage -p 8089 --with-kvstore
root 54540 54511 0 07:09 pts/2 00:00:00 su - splunk
splunk 54544 54540 0 07:09 pts/2 00:00:00 -bash
splunk 54581 54544 0 07:10 pts/2 00:00:00 bash
splunk 54626 54581 0 07:10 pts/2 00:00:00 ps -ef

These are the processes and services running on Linux server.

0 Karma

martin_mueller
SplunkTrust
SplunkTrust

You can ask splunk about itself:

$SPLUNK_HOME/bin/splunk status
$SPLUNK_HOME/bin/splunk btool web list | grep mgmtHostPort
$SPLUNK_HOME/bin/splunk display listen

vikram_m
Path Finder

Thanks martin.

0 Karma
Get Updates on the Splunk Community!

Webinar Recap | Revolutionizing IT Operations: The Transformative Power of AI and ML ...

The Transformative Power of AI and ML in Enhancing Observability   In the realm of IT operations, the ...

.conf24 | Registration Open!

Hello, hello! I come bearing good news: Registration for .conf24 is now open!   conf is Splunk’s rad annual ...

ICYMI - Check out the latest releases of Splunk Edge Processor

Splunk is pleased to announce the latest enhancements to Splunk Edge Processor.  HEC Receiver authorization ...