Deployment Architecture

Publishing data from my localhost to UDP port

juhisaxena28
Explorer

I have opened a UDP port in splunk system and we have configured an index with it. How can i check if the UDP port is available to ingest/parse data in splunk. I need to test it via localhost.

Tags (3)
0 Karma

jnudell_2
Builder

Hi @juhisaxena28 ,

If you have access to the CLI on Linux, you can check if the port is listening using the following command:
netstat -lvn | grep ^udp | grep <your port number>

You can send test data to the port using the following command (let's say the UDP port is 5151:

echo $(date +"%F %T") - INFO - TESTING UDP INPUT > /dev/udp/localhost/5151
OR
echo $(date +"%F %T") - INFO - TESTING UDP INPUT > /dev/udp/127.0.0.1/5151

0 Karma
Get Updates on the Splunk Community!

User Groups | Upcoming Events!

If by chance you weren't already aware, the Splunk Community is host to numerous User Groups, organized ...

Splunk Lantern | Spotlight on Security: Adoption Motions, War Stories, and More

Splunk Lantern is a customer success center that provides advice from Splunk experts on valuable data ...

Splunk Cloud | Empowering Splunk Administrators with Admin Config Service (ACS)

Greetings, Splunk Cloud Admins and Splunk enthusiasts! The Admin Configuration Service (ACS) team is excited ...