When bringing up a new forwarder, it says -
WARNING: Stack size limit (ulimit -s) is set low (2097152 bytes) Splunk may not work.
You may want to run "ulimit -s unlimited" before starting splunk.
We see -
[splnkfwd@apsrs3949 dan]$ ulimit -a
core file size (blocks, -c) 0
data seg size (kbytes, -d) unlimited
scheduling priority (-e) 0
file size (blocks, -f) unlimited
pending signals (-i) 96030
max locked memory (kbytes, -l) 64
max memory size (kbytes, -m) unlimited
open files (-n) 4096
pipe size (512 bytes, -p) 8
POSIX message queues (bytes, -q) 819200
real-time priority (-r) 0
stack size (kbytes, -s) 2048
cpu time (seconds, -t) unlimited
max user processes (-u) 5120
virtual memory (kbytes, -v) unlimited
file locks (-x) unlimited
How should we set ulimit and specifically ulimit -s? assuming `ulimit -s unlimited` is not doable...
↧