<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic How to configure a receiver to listen on port 9997 when trying to receive data from a remote machine on the local network? in Other Usage</title>
    <link>https://community.splunk.com/t5/Other-Usage/How-to-configure-a-receiver-to-listen-on-port-9997-when-trying/m-p/391552#M897</link>
    <description>&lt;P&gt;Hello Team Splunk!&lt;/P&gt;

&lt;P&gt;I am trying to receive data from a remote machine on the local network. In order to do so I configured a receiver to listen on port 9997. This is shown below in Figure 1.  However, when I check &lt;EM&gt;netstat&lt;/EM&gt; I see that the port is not actually listening for incoming connections, Figure 2. Does anyone know what is going wrong? &lt;/P&gt;

&lt;P&gt;Also, I should I mention that I am using &lt;EM&gt;Splunk 6.0&lt;/EM&gt; on Windows 7 operating system (OS).&lt;BR /&gt;
&lt;span class="lia-inline-image-display-wrapper" image-alt="alt text"&gt;&lt;img src="https://community.splunk.com/t5/image/serverpage/image-id/4940iE4FE758C7F73754F/image-size/large?v=v2&amp;amp;px=999" role="button" title="alt text" alt="alt text" /&gt;&lt;/span&gt;&lt;BR /&gt;
&lt;EM&gt;Figure 1&lt;/EM&gt;: Splunk set to listen on 9997&lt;/P&gt;

&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="alt text"&gt;&lt;img src="https://community.splunk.com/t5/image/serverpage/image-id/4941i599B5350673D00A3/image-size/large?v=v2&amp;amp;px=999" role="button" title="alt text" alt="alt text" /&gt;&lt;/span&gt;&lt;BR /&gt;
&lt;EM&gt;Figure 2&lt;/EM&gt;: Ports with 999 not open&lt;/P&gt;</description>
    <pubDate>Tue, 15 May 2018 16:21:42 GMT</pubDate>
    <dc:creator>rogue_carrot</dc:creator>
    <dc:date>2018-05-15T16:21:42Z</dc:date>
    <item>
      <title>How to configure a receiver to listen on port 9997 when trying to receive data from a remote machine on the local network?</title>
      <link>https://community.splunk.com/t5/Other-Usage/How-to-configure-a-receiver-to-listen-on-port-9997-when-trying/m-p/391552#M897</link>
      <description>&lt;P&gt;Hello Team Splunk!&lt;/P&gt;

&lt;P&gt;I am trying to receive data from a remote machine on the local network. In order to do so I configured a receiver to listen on port 9997. This is shown below in Figure 1.  However, when I check &lt;EM&gt;netstat&lt;/EM&gt; I see that the port is not actually listening for incoming connections, Figure 2. Does anyone know what is going wrong? &lt;/P&gt;

&lt;P&gt;Also, I should I mention that I am using &lt;EM&gt;Splunk 6.0&lt;/EM&gt; on Windows 7 operating system (OS).&lt;BR /&gt;
&lt;span class="lia-inline-image-display-wrapper" image-alt="alt text"&gt;&lt;img src="https://community.splunk.com/t5/image/serverpage/image-id/4940iE4FE758C7F73754F/image-size/large?v=v2&amp;amp;px=999" role="button" title="alt text" alt="alt text" /&gt;&lt;/span&gt;&lt;BR /&gt;
&lt;EM&gt;Figure 1&lt;/EM&gt;: Splunk set to listen on 9997&lt;/P&gt;

&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="alt text"&gt;&lt;img src="https://community.splunk.com/t5/image/serverpage/image-id/4941i599B5350673D00A3/image-size/large?v=v2&amp;amp;px=999" role="button" title="alt text" alt="alt text" /&gt;&lt;/span&gt;&lt;BR /&gt;
&lt;EM&gt;Figure 2&lt;/EM&gt;: Ports with 999 not open&lt;/P&gt;</description>
      <pubDate>Tue, 15 May 2018 16:21:42 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Other-Usage/How-to-configure-a-receiver-to-listen-on-port-9997-when-trying/m-p/391552#M897</guid>
      <dc:creator>rogue_carrot</dc:creator>
      <dc:date>2018-05-15T16:21:42Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure a receiver to listen on port 9997 when trying to receive data from a remote machine on the local network?</title>
      <link>https://community.splunk.com/t5/Other-Usage/How-to-configure-a-receiver-to-listen-on-port-9997-when-trying/m-p/391553#M898</link>
      <description>&lt;P&gt;As you're on Windows - use &lt;CODE&gt;netstat -a&lt;/CODE&gt; to actually show listening ports - it doesn't show them by default.&lt;/P&gt;

&lt;P&gt;Hope that helps - if it does I'd be happy if you would upvote/accept this answer, so others could profit from it. &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 15 May 2018 18:18:40 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Other-Usage/How-to-configure-a-receiver-to-listen-on-port-9997-when-trying/m-p/391553#M898</guid>
      <dc:creator>xpac</dc:creator>
      <dc:date>2018-05-15T18:18:40Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure a receiver to listen on port 9997 when trying to receive data from a remote machine on the local network?</title>
      <link>https://community.splunk.com/t5/Other-Usage/How-to-configure-a-receiver-to-listen-on-port-9997-when-trying/m-p/391554#M899</link>
      <description>&lt;P&gt;Thank-you for the help with this.&lt;/P&gt;</description>
      <pubDate>Tue, 15 May 2018 18:36:58 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Other-Usage/How-to-configure-a-receiver-to-listen-on-port-9997-when-trying/m-p/391554#M899</guid>
      <dc:creator>rogue_carrot</dc:creator>
      <dc:date>2018-05-15T18:36:58Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure a receiver to listen on port 9997 when trying to receive data from a remote machine on the local ne</title>
      <link>https://community.splunk.com/t5/Other-Usage/How-to-configure-a-receiver-to-listen-on-port-9997-when-trying/m-p/660109#M900</link>
      <description>&lt;P&gt;Gonna maybe revive this thread. We are using RHEL 8.6 and we have Splunk Enterprise running and configured to listen on port 9997, we added it to the firewall with firewall-cmd and still netstat -l | grep 9997 returns nothing. We have tried different variations of netstat they all return zero. Also systemctl status splunk.service doesn't show the service using port 9997. Any suggestion do we need to add 9997 to the service somehow? If so how. Have set Splunk up on other RHEL 8 servers before no problem but something about this one seems different. Also the inputs.conf shows [splunktcp:\\9997] disabled=0. Any help is appreciated.&lt;/P&gt;</description>
      <pubDate>Mon, 09 Oct 2023 03:41:20 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Other-Usage/How-to-configure-a-receiver-to-listen-on-port-9997-when-trying/m-p/660109#M900</guid>
      <dc:creator>wyomoose</dc:creator>
      <dc:date>2023-10-09T03:41:20Z</dc:date>
    </item>
  </channel>
</rss>

