A Splunk instance has crashed, but no crash log was generated. There is an attempt to determine what user activity caused the crash by running the following search:
What does searching for closed_txn=0 do in this search?
Closed transactions? In Splunk? Sounds like a game of Tetris gone horribly wrong. But seriously, the closed_txn=0 is probably the key to figuring out this crash.
Ah, the closed_txn=0 must be looking for an instance where Splunk didn't have a chance to gracefully close out its processes. Hopefully that narrows down the investigation.
The closed_txn=0 filter sounds like it's looking for situations where Splunk wasn't properly shut down. Probably a good clue to dig into what caused the crash.
Tyra
23 days agoLang
26 days agoElouise
1 days agoArt
15 days agoBenedict
1 months agoLorenza
13 days agoFausto
16 days agoMattie
23 days agoMalinda
1 months agoBlair
1 days agoSolange
8 days agoRegenia
28 days agoStephanie
29 days agoBrendan
2 months agoLoreta
2 months agoKatina
2 months ago