Sometimes, i found splunk will crash.
I want to konw why it crash, how can i got the log?
If you install the Splunk on Splunk app it provides a helpful shortcut and dashboard to view crash logs which you can then send onto support with a diag if it doesn't appear to be anything preventable or caused by any local factors 🙂
http://splunk-base.splunk.com/apps/29008/sos-splunk-on-splunk
Which operating system Perlish? For Linux I believe the files go in $SPLUNK_HOME$\var\log\splunk
The crash logs would be called 'crash-yyyy-mm-dd-HH:MM:SS.log'.