![]() ![]() Now you will see it listed with this command: Sudo /opt/splunkforwarder/bin/splunk enable boot-start -systemd-managed 1 ![]() Run this while still logged in as the dedicated splunk user. It will also ask you to create a user and password to manage the forwarder.Įnable Splunk start on boot with systemd. Setup the SPLUNK_HOME and PATH environment variables for the current shell while also adding it to your bashrc file to make it persistent.Įcho export SPLUNK_HOME=/opt/splunkforwarder > ~/.bashrcĮcho export PATH=$PATH:$SPLUNK_HOME/bin > ~/.bashrcįor the first time starting, start the forwarder like this to accept the license without reading it. You will want to make sure that you are logged in as this user before starting for the first time and before enabling in systemd. You can also do this from the CLI if you want.Īssuming that you run splunk as the dedicated user “splunk” you will want become that user first.īecome the splunk user. Restart Splunk from the CLI on the Splunk indexer host ( where you installed Splunk Enterprise ):
0 Comments
Leave a Reply. |
Details
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |