Getting Data In

unexpectedly installed a another instance of splunk on the Linux server on the same path,but the service is not started yet for the new installation.how to get it removed.

Pavithrapavi
Engager

ran rpm -e on search head and then ran rpm -I --prefix=
Now if I run ./splunk from splunk/bin folder, I am unable to run.its asking me to accept the license , if I accept the license then its saying that splunkd must be stopped to migrate

Tags (1)
0 Karma
1 Solution

traxxasbreaker
Communicator

Sounds like you did an inadvertent upgrade. What version were you on before and what version did you install with rpm? Most likely the way to get rid of it would be to reapply the older version from an rpm repo with that version. If it's the same version, then the migration will likely do nothing... Either way you should probably stop Splunk first then restart it afterward.

You can also try accepting the license and then it should prompt you to either do a dry run showing what it would change or just let it run the migration. If you do the dry run, that would give you a chance to see if it's actually going to change anything and go to a new version or if you just got the current version into a weird state.

View solution in original post

traxxasbreaker
Communicator

Sounds like you did an inadvertent upgrade. What version were you on before and what version did you install with rpm? Most likely the way to get rid of it would be to reapply the older version from an rpm repo with that version. If it's the same version, then the migration will likely do nothing... Either way you should probably stop Splunk first then restart it afterward.

You can also try accepting the license and then it should prompt you to either do a dry run showing what it would change or just let it run the migration. If you do the dry run, that would give you a chance to see if it's actually going to change anything and go to a new version or if you just got the current version into a weird state.

Get Updates on the Splunk Community!

Index This | I am a number, but when you add ‘G’ to me, I go away. What number am I?

March 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...

What’s New in Splunk App for PCI Compliance 5.3.1?

The Splunk App for PCI Compliance allows customers to extend the power of their existing Splunk solution with ...

Extending Observability Content to Splunk Cloud

Register to join us !   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to ...