All Apps and Add-ons

can not add syslog tcp incoming port (Splunk 6.2.1 (build 245427))

jmlacroix
New Member
 
Tags (1)
0 Karma

jmlacroix
New Member

After some tests....,the error ' port 602 is not available.' should be different ( access denied).
In my case, the access to this port is denied due to the fact that splunk is running in non root user and 0-1024 port are not available for non root listen socket.

0 Karma

jmlacroix
New Member

root@srv-splunk:/opt/splunk/bin# ./splunk add tcp 602
Splunk username: admin
Password:
Login failed
root@srv-splunk:/opt/splunk/bin# ./splunk add tcp 602
Splunk username: admin
Password:
In handler 'raw': Parameter name: TCP port 602 is not available.

I have also try via GUI but without success ?

0 Karma
Get Updates on the Splunk Community!

Splunk Training for All: Meet Aspiring Cybersecurity Analyst, Marc Alicea

Splunk Education believes in the value of training and certification in today’s rapidly-changing data-driven ...

Investigate Security and Threat Detection with VirusTotal and Splunk Integration

As security threats and their complexities surge, security analysts deal with increased challenges and ...

Observability Highlights | January 2023 Newsletter

 January 2023New Product Releases Splunk Network Explorer for Infrastructure MonitoringSplunk unveils Network ...