Alerting

ERROR TcpInputProc - Message rejected. Received unexpected message of size=1247900527 bytes from src=XXXXXXXXX:XXXX in streaming mode.

297406
Engager

Hi All -

Version of splunk using : 7.0.2

I am trying to send events to splunk over TCP .Receiving was set in data inputs with port ::8514 , I don't see data in index specified and getting above ERROR in splunkd.log .

Complete ERROR Message :

ERROR TcpInputProc - Message rejected. Received unexpected message of size=1247900527 bytes from src=XXXXXXXXX:XXXX in streaming mode. Maximum message size allowed=67108864. (::) Possible invalid source sending data to splunktcp port or valid source sending unsupported payload.

Any suggestions would be appreciated ?

Tags (1)
0 Karma

Pragnesh
Loves-to-Learn

I am seeing exact same issue in my environment. have you got any solution for this?

0 Karma

skalliger
Motivator

Can you show us your inputs.conf stanza please?

What kind of data are you trying to send?

Skalli

0 Karma
Get Updates on the Splunk Community!

Upcoming Webinar: Unmasking Insider Threats with Slunk Enterprise Security’s UEBA

Join us on Wed, Dec 10. at 10AM PST / 1PM EST for a live webinar and demo with Splunk experts! Discover how ...

.conf25 technical session recap of Observability for Gen AI: Monitoring LLM ...

If you’re unfamiliar, .conf is Splunk’s premier event where the Splunk community, customers, partners, and ...

A Season of Skills: New Splunk Courses to Light Up Your Learning Journey

There’s something special about this time of year—maybe it’s the glow of the holidays, maybe it’s the ...