<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Not received logs form UF to splunk cloud in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/Not-received-logs-form-UF-to-splunk-cloud/m-p/570413#M101091</link>
    <description>&lt;P&gt;Well, your forwarder does connect to the receiving side. So if you have no logs from this machine it's either (most probably) some mistake in inputs configuration on the forwarder's side or some filtering on the indexers' side.&lt;/P&gt;</description>
    <pubDate>Mon, 11 Oct 2021 05:15:47 GMT</pubDate>
    <dc:creator>PickleRick</dc:creator>
    <dc:date>2021-10-11T05:15:47Z</dc:date>
    <item>
      <title>Not received logs form UF to splunk cloud</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Not-received-logs-form-UF-to-splunk-cloud/m-p/570409#M101090</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;Splunk cloud is not receiving the&amp;nbsp; logs form Windows Universal Forwarder. I see the below logs from Splunkd. can please help me to resolve the issue.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Splunkd logs:&lt;/P&gt;&lt;P&gt;AutoLoadBalancedConnectionStrategy [3780 TcpOutEloop] - Closing stream for idx=10.236.162.24:9997&lt;BR /&gt;10-08-2021 09:49:11.748 +0100 INFO AutoLoadBalancedConnectionStrategy [3780 TcpOutEloop] - Connected to idx=10.236.82.132:9997, pset=0, reuse=0.&lt;BR /&gt;10-08-2021 09:49:17.976 +0100 INFO TailReader [2576 tailreader0] - Batch input finished reading file='C:\Program Files\SplunkUniversalForwarder\var\spool\splunk\tracker.log'&lt;BR /&gt;10-08-2021 09:49:47.803 +0100 INFO TailReader [2576 tailreader0] - Batch input finished reading file='C:\Program Files\SplunkUniversalForwarder\var\spool\splunk\tracker.log'&lt;BR /&gt;10-08-2021 09:49:51.617 +0100 INFO AutoLoadBalancedConnectionStrategy [3780 TcpOutEloop] - Closing stream for idx=10.236.82.132:9997&lt;BR /&gt;10-08-2021 09:49:51.618 +0100 INFO AutoLoadBalancedConnectionStrategy [3780 TcpOutEloop] - Connected to idx=10.236.162.97:9997, pset=0, reuse=0.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Oct 2021 04:16:24 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Not-received-logs-form-UF-to-splunk-cloud/m-p/570409#M101090</guid>
      <dc:creator>jackin</dc:creator>
      <dc:date>2021-10-11T04:16:24Z</dc:date>
    </item>
    <item>
      <title>Re: Not received logs form UF to splunk cloud</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Not-received-logs-form-UF-to-splunk-cloud/m-p/570413#M101091</link>
      <description>&lt;P&gt;Well, your forwarder does connect to the receiving side. So if you have no logs from this machine it's either (most probably) some mistake in inputs configuration on the forwarder's side or some filtering on the indexers' side.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Oct 2021 05:15:47 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Not-received-logs-form-UF-to-splunk-cloud/m-p/570413#M101091</guid>
      <dc:creator>PickleRick</dc:creator>
      <dc:date>2021-10-11T05:15:47Z</dc:date>
    </item>
  </channel>
</rss>

