<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Splunk Cloud Indexers in Splunk Cloud Platform</title>
    <link>https://community.splunk.com/t5/Splunk-Cloud-Platform/Splunk-Cloud-Indexers/m-p/546548#M604</link>
    <description>&lt;P&gt;None of those 3 "portals" are used by the UF.&amp;nbsp; Go to the "Universal Forwarder" app on your Splunk Cloud search head and follow the instructions there.&amp;nbsp; They will have you download an app to install on the UF which will configure the forwarder to talk to your cloud indexers.&lt;/P&gt;</description>
    <pubDate>Fri, 02 Apr 2021 15:54:20 GMT</pubDate>
    <dc:creator>richgalloway</dc:creator>
    <dc:date>2021-04-02T15:54:20Z</dc:date>
    <item>
      <title>Splunk Cloud Indexers</title>
      <link>https://community.splunk.com/t5/Splunk-Cloud-Platform/Splunk-Cloud-Indexers/m-p/546539#M603</link>
      <description>&lt;P&gt;I am working on configuring a Universal Forwarder to the SPLUNK Cloud. I have everything set up except the cloud is not receiving my data. I am getting a TCP port timeout. My question is where do I find the web address for the indexers to use to send my SPLUNK Cloud Data too. I have three different portals. One is the main portal (I think) and IDM portal and a ES portal. I am trying to send the data to IDM but unfortunately its just not working. Any help would be apprecieated.&lt;/P&gt;</description>
      <pubDate>Fri, 02 Apr 2021 15:14:23 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Cloud-Platform/Splunk-Cloud-Indexers/m-p/546539#M603</guid>
      <dc:creator>briaca</dc:creator>
      <dc:date>2021-04-02T15:14:23Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Cloud Indexers</title>
      <link>https://community.splunk.com/t5/Splunk-Cloud-Platform/Splunk-Cloud-Indexers/m-p/546548#M604</link>
      <description>&lt;P&gt;None of those 3 "portals" are used by the UF.&amp;nbsp; Go to the "Universal Forwarder" app on your Splunk Cloud search head and follow the instructions there.&amp;nbsp; They will have you download an app to install on the UF which will configure the forwarder to talk to your cloud indexers.&lt;/P&gt;</description>
      <pubDate>Fri, 02 Apr 2021 15:54:20 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Cloud-Platform/Splunk-Cloud-Indexers/m-p/546548#M604</guid>
      <dc:creator>richgalloway</dc:creator>
      <dc:date>2021-04-02T15:54:20Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Cloud Indexers</title>
      <link>https://community.splunk.com/t5/Splunk-Cloud-Platform/Splunk-Cloud-Indexers/m-p/546557#M605</link>
      <description>&lt;P&gt;The instructions state you have to configure and outputs.conf file and does not say what url to use. Nothing in the portal says what url to use. If I dont configure a file the splunkd log just says not outputs.conf file configured so it does not send the data anywhere.&lt;/P&gt;</description>
      <pubDate>Fri, 02 Apr 2021 16:49:23 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Cloud-Platform/Splunk-Cloud-Indexers/m-p/546557#M605</guid>
      <dc:creator>briaca</dc:creator>
      <dc:date>2021-04-02T16:49:23Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Cloud Indexers</title>
      <link>https://community.splunk.com/t5/Splunk-Cloud-Platform/Splunk-Cloud-Indexers/m-p/546570#M606</link>
      <description>&lt;P&gt;The URL is in the file you downloaded from your Splunk Cloud SH.&amp;nbsp; Not just the URL, either, the ENTIRE outputs.conf file.&amp;nbsp; Just install the downloaded app on the forwarder and restart it.&amp;nbsp; There's no need for configuration - that last step is bogus.&lt;/P&gt;</description>
      <pubDate>Fri, 02 Apr 2021 19:55:43 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Cloud-Platform/Splunk-Cloud-Indexers/m-p/546570#M606</guid>
      <dc:creator>richgalloway</dc:creator>
      <dc:date>2021-04-02T19:55:43Z</dc:date>
    </item>
  </channel>
</rss>

