<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Issues with HTTP Status for HEC token in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/Issues-with-HTTP-Status-for-HEC-token/m-p/704588#M116535</link>
    <description>&lt;P&gt;Hey,&lt;/P&gt;&lt;P&gt;I am facing following issues when sending data using HEC token. Connection has been established with no issue but getting following error message with HEC. Any recommendations to resolve this issue will be highly appreciated. Thank you!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="SplunkDash_0-1731871275825.png" style="width: 400px;"&gt;&lt;img src="https://community.splunk.com/t5/image/serverpage/image-id/33493i677975638AA8B8E5/image-size/medium?v=v2&amp;amp;px=400" role="button" title="SplunkDash_0-1731871275825.png" alt="SplunkDash_0-1731871275825.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;[http]&lt;BR /&gt;disabled = 0&lt;BR /&gt;enableSSL = 0&lt;/P&gt;&lt;P&gt;is also there.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Sun, 17 Nov 2024 19:23:12 GMT</pubDate>
    <dc:creator>SplunkDash</dc:creator>
    <dc:date>2024-11-17T19:23:12Z</dc:date>
    <item>
      <title>Issues with HTTP Status for HEC token</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Issues-with-HTTP-Status-for-HEC-token/m-p/704588#M116535</link>
      <description>&lt;P&gt;Hey,&lt;/P&gt;&lt;P&gt;I am facing following issues when sending data using HEC token. Connection has been established with no issue but getting following error message with HEC. Any recommendations to resolve this issue will be highly appreciated. Thank you!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="SplunkDash_0-1731871275825.png" style="width: 400px;"&gt;&lt;img src="https://community.splunk.com/t5/image/serverpage/image-id/33493i677975638AA8B8E5/image-size/medium?v=v2&amp;amp;px=400" role="button" title="SplunkDash_0-1731871275825.png" alt="SplunkDash_0-1731871275825.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;[http]&lt;BR /&gt;disabled = 0&lt;BR /&gt;enableSSL = 0&lt;/P&gt;&lt;P&gt;is also there.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 17 Nov 2024 19:23:12 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Issues-with-HTTP-Status-for-HEC-token/m-p/704588#M116535</guid>
      <dc:creator>SplunkDash</dc:creator>
      <dc:date>2024-11-17T19:23:12Z</dc:date>
    </item>
    <item>
      <title>Re: Issues with HTTP Status for HEC token</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Issues-with-HTTP-Status-for-HEC-token/m-p/704589#M116536</link>
      <description>&lt;P&gt;1. It's much more convenient (and lets people search the content later) if you copy-paste text instead of posting pictures (structured text is best pasted into a preformatted-style paragraph or a code block.&lt;/P&gt;&lt;P&gt;2. Here we only see the result of your action. We have no idea what exactly you did.&lt;/P&gt;</description>
      <pubDate>Sun, 17 Nov 2024 20:09:14 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Issues-with-HTTP-Status-for-HEC-token/m-p/704589#M116536</guid>
      <dc:creator>PickleRick</dc:creator>
      <dc:date>2024-11-17T20:09:14Z</dc:date>
    </item>
    <item>
      <title>Re: Issues with HTTP Status for HEC token</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Issues-with-HTTP-Status-for-HEC-token/m-p/704590#M116537</link>
      <description>&lt;P&gt;Hey&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/231884"&gt;@PickleRick&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I was testing using this:&amp;nbsp;&lt;/P&gt;&lt;P&gt;curl -k &lt;A href="http://splunk-hf-1729440419.us-east-1.alb.amazonaws.com:8088/services/collector" target="_blank"&gt;http://splunk-hf-1729440419.us-east-1.alb.amazonaws.com:8088/services/collector&lt;/A&gt; -H "Authorization: Splunk ad9fe08e-68fb-4b07-876b-94f00bdd0d91" -d '{"event": "Hec Splunk Test"}' -v&lt;/P&gt;</description>
      <pubDate>Sun, 17 Nov 2024 20:26:12 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Issues-with-HTTP-Status-for-HEC-token/m-p/704590#M116537</guid>
      <dc:creator>SplunkDash</dc:creator>
      <dc:date>2024-11-17T20:26:12Z</dc:date>
    </item>
    <item>
      <title>Re: Issues with HTTP Status for HEC token</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Issues-with-HTTP-Status-for-HEC-token/m-p/704649#M116550</link>
      <description>&lt;P&gt;Your URL is short.&lt;/P&gt;&lt;PRE&gt;&lt;A href="https://community.splunk.com/" target="_blank"&gt;https://http-inputs-&amp;lt;customer&amp;gt;.splunkcloud.com/services/collector/raw&lt;/A&gt;&lt;BR /&gt;or&lt;BR /&gt;https://mysplunkserver.example.com:8088/services/collector/event&lt;/PRE&gt;</description>
      <pubDate>Mon, 18 Nov 2024 15:38:36 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Issues-with-HTTP-Status-for-HEC-token/m-p/704649#M116550</guid>
      <dc:creator>dural_yyz</dc:creator>
      <dc:date>2024-11-18T15:38:36Z</dc:date>
    </item>
    <item>
      <title>Re: Issues with HTTP Status for HEC token</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Issues-with-HTTP-Status-for-HEC-token/m-p/704660#M116555</link>
      <description>After you have pasted whole url and token, please remove that token and generate a new one. Otherwise you could surprise how many will try it!&lt;BR /&gt;It’s best to anonymous both url (host part) and token before you post those to community.</description>
      <pubDate>Mon, 18 Nov 2024 17:03:51 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Issues-with-HTTP-Status-for-HEC-token/m-p/704660#M116555</guid>
      <dc:creator>isoutamo</dc:creator>
      <dc:date>2024-11-18T17:03:51Z</dc:date>
    </item>
    <item>
      <title>Re: Issues with HTTP Status for HEC token</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Issues-with-HTTP-Status-for-HEC-token/m-p/704687#M116560</link>
      <description>&lt;P&gt;Hey&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/214410"&gt;@isoutamo&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you for letting me know. But the token and the host URL provided are not the actual, I changed them a little. We should be fine. Thank you so much again.&lt;/P&gt;</description>
      <pubDate>Tue, 19 Nov 2024 00:45:13 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Issues-with-HTTP-Status-for-HEC-token/m-p/704687#M116560</guid>
      <dc:creator>SplunkDash</dc:creator>
      <dc:date>2024-11-19T00:45:13Z</dc:date>
    </item>
    <item>
      <title>Re: Issues with HTTP Status for HEC token</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Issues-with-HTTP-Status-for-HEC-token/m-p/704688#M116561</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;The issues got resolved. The port 8088 was used by other services causing that issue, had to kill that service to resolve that issue. Now working as expected. Thank you so much all.&lt;/P&gt;</description>
      <pubDate>Tue, 19 Nov 2024 00:44:27 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Issues-with-HTTP-Status-for-HEC-token/m-p/704688#M116561</guid>
      <dc:creator>SplunkDash</dc:creator>
      <dc:date>2024-11-19T00:44:27Z</dc:date>
    </item>
  </channel>
</rss>

