Splunk® Enterprise

Search Tutorial

Download manual as PDF

Download topic as PDF

Launch Splunk Web

After you download and install the software, you must start Splunk Enterprise and launch Splunk Web.


Start Splunk Enterprise on Linux

After you install Splunk Enterprise, use the Splunk CLI to start Splunk Enterprise.

Prerequisite
You need to understand how to access the CLI. See About the CLI in the Admin Manual.

Steps

  1. Simplify the CLI access by adding a SPLUNK_HOME environment variable for the top-level installation directory, and adding $SPLUNK_HOME/bin to your shell's path.
    If you installed in the default location for Linux, then your export path looks like this:
    # export SPLUNK_HOME=/opt/splunk
    # export PATH=$SPLUNK_HOME/bin:$PATH
    
    If you installed in another location, use that path for the SPLUNK_HOME environment variable.
  2. In the CLI, to start Splunk Enterprise type $SPLUNK_HOME/bin/splunk start
  3. Accept the Splunk Enterprise license.
    After you run the start command, Splunk Enterprise displays the license agreement and prompts you to accept the license before the startup sequence continues.
    Troubleshooting: If you have problems starting Splunk Enterprise, see Start Splunk Enterprise for the first time in the Installation Manual.
  4. Go to Login to Splunk Web.

Useful CLI commands

If you need to stop, restart, or check the status of your Splunk Enterprise server, use these CLI commands:

$ splunk stop
$ splunk restart
$ splunk status


Start Splunk Enterprise on Windows

After the Windows installation finishes, Splunk Enterprise starts and opens Splunk Web in a supported browser.

  1. If Splunk Enterprise does not start, use one of the following options to start it.
    • Start Splunk Enterprise from the Start menu.
    • Use the Windows Services Manager to start Splunk Enterprise.
    • Open a cmd window, go to \Program Files\Splunk\bin, and type splunk start.
  2. Go to Login to Splunk Web.


Start Splunk Enterprise on Mac OS X

In Mac OS X, you can start Splunk Enterprise from the Finder.

  1. Double-click the Splunk icon on your desktop to launch the Splunk helper application, called Splunk's Little Helper.
    The first time you run the helper application, it notifies you that it needs to perform an initialization.
  2. Click OK for Splunk Enterprise to initialize and set up the trial license.
  3. After the helper application opens, select Start and Show Splunk. This option starts Splunk Enterprise and directs your web browser to open a page to Splunk Web.
    You can also use the helper application to stop Splunk Enterprise.
  4. Go to Login to Splunk Web.

Login to Splunk Web

At the end of the startup sequence, a message appears about where to access Splunk Web:

The Splunk Web interface is at http://localhost:8000

Splunk Web runs by default on port 8000 of the host on which it is installed. If you use Splunk Enterprise on your local machine, the URL to access Splunk Web is http://localhost:8000.

Using an Enterprise license

If you are using an Enterprise license, when you launch Splunk Enterprise for the first time, this login screen appears.

This screen image shows the first time login page for Splunk Enterprise. It shows that the default username is admin and that the default password is changeme.

Follow the screen instructions to authenticate with the default credentials.

username: admin
password: changeme

When you sign in with the default password, you can either create a password, or click Skip to continue to use the default password.

The first page you see is Splunk Home.

Using a Free license

If you are using a Free license, you do not need to authenticate to use Splunk Enterprise. When you start Splunk Enterprise you do not see this login screen. Instead, you go directly to Splunk Home or whatever is set as the default app for your account.

Next step

You have downloaded the tutorial data files and installed Splunk Enterprise.

Continue to Navigating Splunk Web.

PREVIOUS
Install Splunk Enterprise
  NEXT
Navigating Splunk Web

This documentation applies to the following versions of Splunk® Enterprise: 6.4.0, 6.4.1, 6.4.2, 6.4.3, 6.4.4, 6.4.5, 6.4.6, 6.4.7, 6.4.8, 6.4.9, 6.4.10, 6.4.11, 6.5.0, 6.5.1, 6.5.1612 (Splunk Cloud only), 6.5.2, 6.5.3, 6.5.4, 6.5.5, 6.5.6, 6.5.7, 6.5.8, 6.5.9, 6.5.10, 6.6.0, 6.6.1, 6.6.2, 6.6.3, 6.6.4, 6.6.5, 6.6.6, 6.6.7, 6.6.8, 6.6.9, 6.6.10, 6.6.11, 6.6.12, 7.0.0, 7.0.1, 7.0.2, 7.0.3, 7.0.4, 7.0.5, 7.0.6, 7.0.7, 7.0.8, 7.0.9, 7.0.10, 7.0.11


Comments

Hi I installed trail version, i am unable to access web portal after restarting the server

Ram535
September 22, 2017

Was this documentation topic helpful?

Enter your email address, and someone from the documentation team will respond to you:

Please provide your comments here. Ask a question or make a suggestion.

You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters