All Apps and Add-ons

Splunk Add-on for Infoblox: Why am I getting DNS, DHCP, Log Data into Splunk but other syslog type data in the syslog is not being index into splunk its being left?

we553
Engager

We have a clustered environment, we have the Splunk Add On for Infoblox setup and configuered. We are getting the DNS Captures and the DHCP and DNS data from the logs over UDP port. This seems to be working fine. The other piece of this though is the actual syslog data. We are also trying to send that over UDP port, and we are not getting any of the syslog sourcetype data in splunk.

Is there something special we have to do with splunk or infoblox?

Tags (1)
0 Karma
Get Updates on the Splunk Community!

Splunk Decoded: Service Maps vs Service Analyzer Tree View vs Flow Maps

It’s Monday morning, and your phone is buzzing with alert escalations – your customer-facing portal is running ...

What’s New in Splunk Observability – September 2025

What's NewWe are excited to announce the latest enhancements to Splunk Observability, designed to help ITOps ...

Fun with Regular Expression - multiples of nine

Fun with Regular Expression - multiples of nineThis challenge was first posted on Slack #regex channel ...