hey,
Thanks for the information, but sadly it did not work for me.
When i check the logs to see if i could find a specific error for my case, in the splunkd.log, i found the following errors:
03-21-2018 06:43:35.005 -0400 ERROR ExecProcessor - message from "python "C:\Program Files\Splunk\etc\apps\splunk_app_db_connect\bin\mi_input.py"" self.stream.flush()
03-21-2018 06:43:35.005 -0400 ERROR ExecProcessor - message from "python "C:\Program Files\Splunk\etc\apps\splunk_app_db_connect\bin\mi_input.py"" IOError: [Errno 22] Invalid argument
03-21-2018 06:43:35.005 -0400 ERROR ExecProcessor - message from "python "C:\Program Files\Splunk\etc\apps\splunk_app_db_connect\bin\mi_input.py"" Logged from file None, line None
03-21-2018 06:43:35.348 -0400 ERROR ExecProcessor - message from "python "C:\Program Files\Splunk\etc\apps\splunk_app_db_connect\bin\mi_input.py"" Degrade mode - ENTERING - (pid=4124) rename failed. File in use?
This errors are from the splunk dbconnect app, but i do not know what they mean.
Does this have something to do with the maximum number of historical search?
... View more