Deployment Architecture

How to create custom network port?

sanjubaba
Path Finder

How to create custom network port to receive data on Splunk syslog server ? I don't want data to be received on default port.

Labels (1)
0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @sanjubaba,

are you speaking of receiving logs from Forwarders or syslogs?

if Forwarders, go in [Settings -- Forwardering and Receiving -- Configure Receiving[ on Indexers and choose the port you like (9997 is the default).

If syslogs, choose the port in the inputs configuration [Settings -- Data Inputs -- TCP/UDP -- New Local TCP/UDP], (514 is the default).

Ciao.

Giuseppe

0 Karma

sanjubaba
Path Finder

@gcusello I want logs on syslog server(which is the forwarder machine) from network devices.

0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @sanjubaba,

let me understand:

you have an Heavy Forwarder that has to receive syslogs, is this correct?

If this is your need, you have to go in the network inputs and set the port you want.

Ciao.

Giuseppe

0 Karma
Get Updates on the Splunk Community!

Database Performance Sidebar Panel Now on APM Database Query Performance & Service ...

We’ve streamlined the troubleshooting experience for database-related service issues by adding a database ...

IM Landing Page Filter - Now Available

We’ve added the capability for you to filter across the summary details on the main Infrastructure Monitoring ...

Dynamic Links from Alerts to IM Navigators - New in Observability Cloud

Splunk continues to improve the troubleshooting experience in Observability Cloud with this latest enhancement ...