Quantcast
Channel: Questions in topic: "splunk-enterprise"
Viewing all articles
Browse latest Browse all 47296

why is /opt/splunk/var/run/splunk/cluster/search-buckets filling up my disk?

$
0
0
Splunk 6.6.3, clustered env. One of our indexers reporting high disk usage. Traced it down to ```/opt/splunk/var/run/splunk/cluster/search-buckets``` containing many `search_sitedefault_gen*.csv.gz` and `summarize_sitedefault_gen*.csv.gz` files going back to 22 days ago (December 12 at this time). I deleted older ones to stop triggering our disk use alerts. Whats creating these files and why?

Viewing all articles
Browse latest Browse all 47296

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>