Dashboards & Visualizations

i dont find the logged data in splunk enterprise and in cloud after creating token in HTTP event collector and the curl request

arunprasath93
Explorer

I followed this steps from splunk doc to enable Http Event collector (http://dev.splunk.com/view/event-collector/SP-CAAAE7F)

when I try searching source="http:" , i dont find the logged data in splunk enetrprise or splunk cloud.plz check images for better understanding.
alt text

Tags (1)
0 Karma

prakash007
Builder

@arunprasath93: looks like you were able to post the message successfully, did you do a all-time search just in case if the timestamps are off, if you have associated any index to your HEC token, try running a run with your index and Sourcetype.

0 Karma
Get Updates on the Splunk Community!

See just what you’ve been missing | Observability tracks at Splunk University

Looking to sharpen your observability skills so you can better understand how to collect and analyze data from ...

Weezer at .conf25? Say it ain’t so!

Hello Splunkers, The countdown to .conf25 is on-and we've just turned up the volume! We're thrilled to ...

How SC4S Makes Suricata Logs Ingestion Simple

Network security monitoring has become increasingly critical for organizations of all sizes. Splunk has ...