<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Problems with Splunk &amp;quot;eventType=connect_fail&amp;quot; in Installation</title>
    <link>https://community.splunk.com/t5/Installation/Problems-with-Splunk-quot-eventType-connect-fail-quot/m-p/153286#M9815</link>
    <description>&lt;P&gt;Good afternoon,&lt;/P&gt;

&lt;P&gt;How can i check that the forwarders are sending the logs correctly? I have the following error in my logs:&lt;/P&gt;

&lt;P&gt;"eventType=connect_fail" in metrics.log&lt;/P&gt;

&lt;P&gt;metrics.log:12-17-2014 09:38:48.529 +0100 INFO StatusMgr - destHost=10.26.XX.XX, destIp=10.26.XX.XX, destPort=9997, eventType=connect_fail, publisher=tcpout, sourcePort=8089, statusee=TcpOutputProcessor&lt;/P&gt;

&lt;P&gt;This event produce that the los are not been sending correctly, them i need know if any option in the program execution can check if splunk is sending or not the data to the server.&lt;/P&gt;

&lt;P&gt;And, can i resolve this issue in the configuration with some parameter? This issue only appear in determinate times isn't fixed.&lt;/P&gt;

&lt;P&gt;Thanks and regards.&lt;/P&gt;</description>
    <pubDate>Thu, 18 Dec 2014 14:49:42 GMT</pubDate>
    <dc:creator>joseluisrespeto</dc:creator>
    <dc:date>2014-12-18T14:49:42Z</dc:date>
    <item>
      <title>Problems with Splunk "eventType=connect_fail"</title>
      <link>https://community.splunk.com/t5/Installation/Problems-with-Splunk-quot-eventType-connect-fail-quot/m-p/153286#M9815</link>
      <description>&lt;P&gt;Good afternoon,&lt;/P&gt;

&lt;P&gt;How can i check that the forwarders are sending the logs correctly? I have the following error in my logs:&lt;/P&gt;

&lt;P&gt;"eventType=connect_fail" in metrics.log&lt;/P&gt;

&lt;P&gt;metrics.log:12-17-2014 09:38:48.529 +0100 INFO StatusMgr - destHost=10.26.XX.XX, destIp=10.26.XX.XX, destPort=9997, eventType=connect_fail, publisher=tcpout, sourcePort=8089, statusee=TcpOutputProcessor&lt;/P&gt;

&lt;P&gt;This event produce that the los are not been sending correctly, them i need know if any option in the program execution can check if splunk is sending or not the data to the server.&lt;/P&gt;

&lt;P&gt;And, can i resolve this issue in the configuration with some parameter? This issue only appear in determinate times isn't fixed.&lt;/P&gt;

&lt;P&gt;Thanks and regards.&lt;/P&gt;</description>
      <pubDate>Thu, 18 Dec 2014 14:49:42 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Problems-with-Splunk-quot-eventType-connect-fail-quot/m-p/153286#M9815</guid>
      <dc:creator>joseluisrespeto</dc:creator>
      <dc:date>2014-12-18T14:49:42Z</dc:date>
    </item>
    <item>
      <title>Re: Problems with Splunk "eventType=connect_fail"</title>
      <link>https://community.splunk.com/t5/Installation/Problems-with-Splunk-quot-eventType-connect-fail-quot/m-p/153287#M9816</link>
      <description>&lt;P&gt;up up up !&lt;/P&gt;</description>
      <pubDate>Mon, 22 Dec 2014 07:09:49 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Problems-with-Splunk-quot-eventType-connect-fail-quot/m-p/153287#M9816</guid>
      <dc:creator>joseluisrespeto</dc:creator>
      <dc:date>2014-12-22T07:09:49Z</dc:date>
    </item>
    <item>
      <title>Re: Problems with Splunk "eventType=connect_fail"</title>
      <link>https://community.splunk.com/t5/Installation/Problems-with-Splunk-quot-eventType-connect-fail-quot/m-p/153288#M9817</link>
      <description>&lt;P&gt;I downvoted this post because this did not answer the question. how did you get it working?&lt;/P&gt;</description>
      <pubDate>Fri, 21 Apr 2017 14:18:34 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Problems-with-Splunk-quot-eventType-connect-fail-quot/m-p/153288#M9817</guid>
      <dc:creator>brreeves_splunk</dc:creator>
      <dc:date>2017-04-21T14:18:34Z</dc:date>
    </item>
  </channel>
</rss>

