Splunk Search

Why is Splunk Service not starting with 'authDb' error?

NicholasLeader
New Member

Hi - any idea why my Splunk service is failing with this error?

What is 'authDb'?

~]# service splunk start
Starting Splunk...

Splunk> CSI: Logfiles.

Checking prerequisites...
Checking http port [8000]: open
Checking mgmt port [8089]: open
Checking appserver port [127.0.0.1:8065]: open
Checking kvstore port [8191]: open
Checking configuration... Done.
Creating: /mnt/splunk_hot//authDb
Warning: cannot create "/mnt/splunk_hot//authDb"

Tags (1)
0 Karma

davpx
Communicator

It would seem Splunk does not have permissions to write. Confirm the user Splunk runs as has ownership of the installation and that there are no storage issues.

chown -R splunk:splunk /mnt/*

Get Updates on the Splunk Community!

Extending Observability Content to Splunk Cloud

Watch Now!   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to leverage ...

More Control Over Your Monitoring Costs with Archived Metrics!

What if there was a way you could keep all the metrics data you need while saving on storage costs?This is now ...

New in Observability Cloud - Explicit Bucket Histograms

Splunk introduces native support for histograms as a metric data type within Observability Cloud with Explicit ...