Dashboards & Visualizations

i dont find the logged data in splunk enterprise and in cloud after creating token in HTTP event collector and the curl request

arunprasath93
Explorer

I followed this steps from splunk doc to enable Http Event collector (http://dev.splunk.com/view/event-collector/SP-CAAAE7F)

when I try searching source="http:" , i dont find the logged data in splunk enetrprise or splunk cloud.plz check images for better understanding.
alt text

Tags (1)
0 Karma

prakash007
Builder

@arunprasath93: looks like you were able to post the message successfully, did you do a all-time search just in case if the timestamps are off, if you have associated any index to your HEC token, try running a run with your index and Sourcetype.

0 Karma
Get Updates on the Splunk Community!

Part 2: Diving Deeper With AIOps

Getting the Most Out of Event Correlation and Alert Storm Detection in Splunk IT Service Intelligence   Watch ...

User Groups | Upcoming Events!

If by chance you weren't already aware, the Splunk Community is host to numerous User Groups, organized ...

Splunk Lantern | Spotlight on Security: Adoption Motions, War Stories, and More

Splunk Lantern is a customer success center that provides advice from Splunk experts on valuable data ...