Knowledge Management

Troubleshooting Splunk

mjlsnombrado
Communicator

Hi everyone

Can I ask for useful troubleshooting commands for example restart of services, licenses check, etc ?

Thanks in advance 🙂

0 Karma
1 Solution

vijithv
Explorer

Hi, the basic commands that help to start off splunk are,

splunk help - display usage summary

splunk help display the details of a specific object

splunk [start | stop | restart] - Start, stop and restart splunk
splunk start --accept-license - automatically accept the license without prompt
splunk status -display the splunk process status
splunk show splunkd-port - show the port that the splunkd listens on
splunk show web-port - show the port that splunk web listens on
splunk show servername - show the servername of this instance
splunk show default-hostname - show the default host name used for all data inputs

and this below link have the reference to CLI commands for troubleshooting
http://docs.splunk.com/Documentation/Splunk/7.0.3/Troubleshooting/CommandlinetoolsforusewithSupport

View solution in original post

0 Karma

vijithv
Explorer

Hi, the basic commands that help to start off splunk are,

splunk help - display usage summary

splunk help display the details of a specific object

splunk [start | stop | restart] - Start, stop and restart splunk
splunk start --accept-license - automatically accept the license without prompt
splunk status -display the splunk process status
splunk show splunkd-port - show the port that the splunkd listens on
splunk show web-port - show the port that splunk web listens on
splunk show servername - show the servername of this instance
splunk show default-hostname - show the default host name used for all data inputs

and this below link have the reference to CLI commands for troubleshooting
http://docs.splunk.com/Documentation/Splunk/7.0.3/Troubleshooting/CommandlinetoolsforusewithSupport

0 Karma

mjlsnombrado
Communicator

Thanks for the help 🙂

0 Karma

deepashri_123
Motivator

Hey@mjlsnombrado,

You can use btool command to check configuration files that are being used.
You can refer these documents for further reference:
http://docs.splunk.com/Documentation/Splunk/7.0.3/Troubleshooting/Usebtooltotroubleshootconfiguratio...
http://docs.splunk.com/Documentation/Splunk/7.0.3/Troubleshooting/IntrototroubleshootingSplunk
Let me know if this helps!!

0 Karma

mjlsnombrado
Communicator

It helps thanks 🙂

0 Karma
Get Updates on the Splunk Community!

More Ways To Control Your Costs With Archived Metrics | Register for Tech Talk

Tuesday, May 14, 2024  |  11AM PT / 2PM ET Register to Attend Join us for this Tech Talk and learn how to ...

.conf24 | Personalize your .conf experience with Learning Paths!

Personalize your .conf24 Experience Learning paths allow you to level up your skill sets and dive deeper ...

Threat Hunting Unlocked: How to Uplevel Your Threat Hunting With the PEAK Framework ...

WATCH NOWAs AI starts tackling low level alerts, it's more critical than ever to uplevel your threat hunting ...