All Apps and Add-ons

use alternative port for pfsense

bstirling2307
Engager

I would like to use 8514 for the pfsense logs. as I have other hosts syslogs to 514. when i set up an input to the indexer on port 8514 pfsense source type dose not appear.

1 Solution

bstirling2307
Engager

solved this issue. PFsense service had to be restarted before the port change would take effect.

View solution in original post

bstirling2307
Engager

solved this issue. PFsense service had to be restarted before the port change would take effect.

Richfez
SplunkTrust
SplunkTrust

I think this qualifies as an answer, and since it's the right answer, you should accept it for yourself. I have converted it to an answer for you already so I did the easy part. 🙂

(If done all the time accepting your own answers is not ideal, but occasionally accepting your own answer when it's The Right Thing is completely fine!)

0 Karma

skalliger
SplunkTrust
SplunkTrust

Post an example of your inputs.conf please.
And also a netstat to see whether splunk is actually listening on this port.

0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) v3.54.0

The Splunk Threat Research Team (STRT) recently released Enterprise Security Content Update (ESCU) v3.54.0 and ...

Using Machine Learning for Hunting Security Threats

WATCH NOW Seeing the exponential hike in global cyber threat spectrum, organizations are now striving more for ...

New Learning Videos on Topics Most Requested by You! Plus This Month’s New Splunk ...

Splunk Lantern is a customer success center that provides advice from Splunk experts on valuable data ...