When I startup Splunk (v6.3.0 for Linux), I've notices warning message when Splunk is Checking conf files for problems.
It finds several issues with the default prefs.conf file, telling me several items have invalid keys.
1. Not sure why the default file is coming up with errors. This has not been updated by us.
2. Is prefs.conf used anymore? I thought this file was removed. It is not listed in the admin document as a conf file.
I renamed the file and restarted, no warning messages, but then it complained it couldn't find default/prefs.conf.
What's the story with this behavior?
Thanks,
Tom
↧