<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic iDRAC Firmware 5.0 syslogs not received from Splunk in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/iDRAC-Firmware-5-0-syslogs-not-received-from-Splunk/m-p/695633#M115486</link>
    <description>&lt;P&gt;We are able to perform a successful iDRAC syslog sent to Splunk for Firmware version 3.xx but when its Firmware version 5.xx, we aren't successful. Any chance that it is related to the firmware that I need to configure? Both configuration are the same and our log collector picks up an udp packets from the iDRACs.&lt;/P&gt;</description>
    <pubDate>Thu, 08 Aug 2024 03:56:17 GMT</pubDate>
    <dc:creator>JMDEJESUS24</dc:creator>
    <dc:date>2024-08-08T03:56:17Z</dc:date>
    <item>
      <title>iDRAC Firmware 5.0 syslogs not received from Splunk</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/iDRAC-Firmware-5-0-syslogs-not-received-from-Splunk/m-p/695633#M115486</link>
      <description>&lt;P&gt;We are able to perform a successful iDRAC syslog sent to Splunk for Firmware version 3.xx but when its Firmware version 5.xx, we aren't successful. Any chance that it is related to the firmware that I need to configure? Both configuration are the same and our log collector picks up an udp packets from the iDRACs.&lt;/P&gt;</description>
      <pubDate>Thu, 08 Aug 2024 03:56:17 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/iDRAC-Firmware-5-0-syslogs-not-received-from-Splunk/m-p/695633#M115486</guid>
      <dc:creator>JMDEJESUS24</dc:creator>
      <dc:date>2024-08-08T03:56:17Z</dc:date>
    </item>
    <item>
      <title>Re: iDRAC Firmware 5.0 syslogs not received from Splunk</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/iDRAC-Firmware-5-0-syslogs-not-received-from-Splunk/m-p/695641#M115488</link>
      <description>&lt;P&gt;OK. We need more info.&lt;/P&gt;&lt;P&gt;"our log collector picks up an udp packets from the iDRACs." - does that mean that you can receive (how?) logs from the iDRACs but they&amp;nbsp; don't get ingested into Splunk? Or does it mean that you get some other UDP packets (on different ports?) not your desired syslogs?&lt;/P&gt;&lt;P&gt;How did you verify it?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 08 Aug 2024 05:53:20 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/iDRAC-Firmware-5-0-syslogs-not-received-from-Splunk/m-p/695641#M115488</guid>
      <dc:creator>PickleRick</dc:creator>
      <dc:date>2024-08-08T05:53:20Z</dc:date>
    </item>
    <item>
      <title>Re: iDRAC Firmware 5.0 syslogs not received from Splunk</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/iDRAC-Firmware-5-0-syslogs-not-received-from-Splunk/m-p/695926#M115515</link>
      <description>&lt;P&gt;Hi &lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/231884"&gt;@PickleRick&lt;/a&gt;, it receives the tcpdump connection showing the syslog activity and information whenever we log on, log off or send a test message from the iDRAC machine, but it is not ingested in Splunk and somehow it gets lost from the Log collector machine.&lt;/P&gt;</description>
      <pubDate>Sun, 11 Aug 2024 23:36:06 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/iDRAC-Firmware-5-0-syslogs-not-received-from-Splunk/m-p/695926#M115515</guid>
      <dc:creator>JMDEJESUS24</dc:creator>
      <dc:date>2024-08-11T23:36:06Z</dc:date>
    </item>
    <item>
      <title>Re: iDRAC Firmware 5.0 syslogs not received from Splunk</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/iDRAC-Firmware-5-0-syslogs-not-received-from-Splunk/m-p/695993#M115530</link>
      <description>&lt;P&gt;OK. It's a start. So UDP packets are reaching your receiver box. What then? Are you trying to receive the data directly on your Splunk instance (or a forwarder)? Or are you using some intermediate syslog receiver like rsyslog or syslog-ng.&lt;/P&gt;&lt;P&gt;Did you check your local firewall?&lt;/P&gt;&lt;P&gt;If it's a linux box, did you verify rp_filter settings and routing?&lt;/P&gt;</description>
      <pubDate>Mon, 12 Aug 2024 13:17:33 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/iDRAC-Firmware-5-0-syslogs-not-received-from-Splunk/m-p/695993#M115530</guid>
      <dc:creator>PickleRick</dc:creator>
      <dc:date>2024-08-12T13:17:33Z</dc:date>
    </item>
  </channel>
</rss>

