<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Splunk &amp;quot;destroying&amp;quot; a TCP connection in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-quot-destroying-quot-a-TCP-connection/m-p/711250#M117501</link>
    <description>&lt;P&gt;Hello. I noticed on a U/F, "Splunk destroying TcpOutputClient during shutdown/reload" as a level INFO and happens 4 or 5 times a minute for each of the 3 indexers.&lt;BR /&gt;The U/F has been running for quite some time and is not in a shutdown/reload situation and I am receiving events both _internal and OS data from the TA_Splunk_nix&amp;nbsp; from it.&lt;BR /&gt;Is destroying a connection a normal message and what would cause that? I can't seem to find anything online about this message.&lt;/P&gt;</description>
    <pubDate>Tue, 11 Feb 2025 10:26:19 GMT</pubDate>
    <dc:creator>TheJagoff</dc:creator>
    <dc:date>2025-02-11T10:26:19Z</dc:date>
    <item>
      <title>Splunk "destroying" a TCP connection</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-quot-destroying-quot-a-TCP-connection/m-p/711250#M117501</link>
      <description>&lt;P&gt;Hello. I noticed on a U/F, "Splunk destroying TcpOutputClient during shutdown/reload" as a level INFO and happens 4 or 5 times a minute for each of the 3 indexers.&lt;BR /&gt;The U/F has been running for quite some time and is not in a shutdown/reload situation and I am receiving events both _internal and OS data from the TA_Splunk_nix&amp;nbsp; from it.&lt;BR /&gt;Is destroying a connection a normal message and what would cause that? I can't seem to find anything online about this message.&lt;/P&gt;</description>
      <pubDate>Tue, 11 Feb 2025 10:26:19 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-quot-destroying-quot-a-TCP-connection/m-p/711250#M117501</guid>
      <dc:creator>TheJagoff</dc:creator>
      <dc:date>2025-02-11T10:26:19Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk "destroying" a TCP connection</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-quot-destroying-quot-a-TCP-connection/m-p/711251#M117502</link>
      <description>&lt;P&gt;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/130109"&gt;@TheJagoff&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Please take a look. Is it related to the same?&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.splunk.com/Documentation/Splunk/9.2.1/ReleaseNotes/Fixedissues?_gl=1*r881gn*_gcl_au*MzQxNjM0NS4xNzM1ODEyMzE2*FPAU*MzQxNjM0NS4xNzM1ODEyMzE2*_ga*Mjg2MzMzODQ3LjE3MDA1NDA4NTI.*_ga_5EPM2P39FV*MTczOTI2ODAwNi4xMzQuMS4xNzM5MjcwMDA3LjAuMC40OTAyMTQ4NDE.*_fplc*cW9OdFBFUENuRkdGR2tYakglMkJKOVZzMU45Nmd4R01uUGFFc3h1RDBVJTJGWDNTVFFiUmxURlBqTlI0cWg2bDMzTUU1M2hFOXRVJTJCdGFVZEhsRXAwY1BMdUtmNnRFd2xFSHBZOUJPeFZFWTdEdUs0ZHROZGRzTmxYSkFTU3hKZ1JRJTNEJTNE" target="_blank"&gt;Fixed issues - Splunk Documentation&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://community.splunk.com/t5/Knowledge-Management/Slow-indexer-receiver-detection-capability/m-p/683768#M9963" target="_blank"&gt;Slow indexer/receiver detection capability - Splunk Community&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://community.splunk.com/t5/Knowledge-Management/Splunk-crash-during-tcpout-outputs-conf-reload/m-p/699397" target="_blank"&gt;Splunk crash during tcpout (outputs.conf) reload - Splunk Community&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 11 Feb 2025 10:37:01 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-quot-destroying-quot-a-TCP-connection/m-p/711251#M117502</guid>
      <dc:creator>kiran_panchavat</dc:creator>
      <dc:date>2025-02-11T10:37:01Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk "destroying" a TCP connection</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-quot-destroying-quot-a-TCP-connection/m-p/711263#M117504</link>
      <description>&lt;P&gt;Looking through the 2nd article that you suggested, it was noticed that the outputs.conf had&amp;nbsp;&lt;BR /&gt;&lt;SPAN&gt;autoLBFrequency = 15&lt;BR /&gt;&lt;SPAN class=""&gt;forceTimebasedAutoLB = true&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;Removed&amp;nbsp;&lt;SPAN class=""&gt;forceTimebasedAutoLB = true and the message stopped after the U/F restarted. It appears that the 2 entries were conflicting with each other.&lt;BR /&gt;&lt;BR /&gt;Thank you for the guidance!&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 11 Feb 2025 13:10:50 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-quot-destroying-quot-a-TCP-connection/m-p/711263#M117504</guid>
      <dc:creator>TheJagoff</dc:creator>
      <dc:date>2025-02-11T13:10:50Z</dc:date>
    </item>
  </channel>
</rss>

