[root@ip-172-31-21-87 bin]# cd /data/splunk/bin/
[root@ip-172-31-21-87 bin]# ./splunk stop
Stopping splunkd...
Shutting down. Please wait, as this may take a few minutes.
....................................................................................................................... [ OK ]
Stopping splunk helpers...
[ OK ]
Done.
[root@ip-172-31-21-87 bin]# ./splunk clean eventdata
This action will permanently erase all events from ALL indexes; it cannot be undone.
Are you sure you want to continue [y/n]? y
Cleaning database _audit.
Cleaning database _internal.
Cleaning database _introspection.
Cleaning database _telemetry.
Cleaning database _thefishbucket.
Cleaning database aceevent.
Cleaning database b1_a_main.
Cleaning database b1_a_spin.
Cleaning database b1_amz_main.
Cleaning database c1_amz_main.
Cleaning database h1_i_main.
Cleaning database h1_i_spin.
Cleaning database history.
Cleaning database main.
Cleaning database mint.
Cleaning database requests.
Cleaning database summary.
Disabled database 'a1_a_main': will not clean.
Disabled database 'a1_a_spin': will not clean.
Disabled database 'a1_amz_main': will not clean.
Disabled database 'a1_amz_spin': will not clean.
Disabled database 'a1_i_main': will not clean.
Disabled database 'a1_i_spin': will not clean.
Disabled database 'b1_amz_spin': will not clean.
Disabled database 'c1_a_main': will not clean.
Disabled database 'c1_a_spin': will not clean.
Disabled database 'c1_amz_spin': will not clean.
Disabled database 'h1_a_main': will not clean.
Disabled database 'h1_a_spin': will not clean.
Disabled database 'splunklogger': will not clean.
[root@ip-172-31-21-87 bin]# ./splunk start
Splunk> Australian for grep.
Checking prerequisites...
Checking http port [80]: open
Checking mgmt port [8089]: open
Checking appserver port [127.0.0.1:8065]: open
Checking kvstore port [8191]: open
Checking configuration... Done.
Checking critical directories... Done
Checking indexes...
Validated: _audit _internal _introspection _telemetry _thefishbucket aceevent b1_a_main b1_a_spin b1_amz_main c1_amz_main h1_i_main h1_i_spin history main mint requests summary
Done
Checking filesystem compatibility... Done
Checking conf files for problems...
Done
Checking default conf files for edits...
Validating installed files against hashes from '/data/splunk/splunk-7.0.1-2b5b15c4ee89-linux-2.6-x86_64-manifest'
All installed files intact.
Done
All preliminary checks passed.
Starting splunk server daemon (splunkd)...
Done
[ OK ]
Waiting for web server at http://127.0.0.1:80 to be available.... Done
If you get stuck, we're here to help.
Look for answers here: http://docs.splunk.com
The Splunk web interface is at http://ip-172-31-21-87