Deployment Architecture

WARN AuthenticationManagerSplunk - Login failed. Incorrect login for user: admin

chibhat
New Member

What is the reason for getting the WARN " AuthenticationManagerSplunk - Login failed. Incorrect login for user: admin" continuously in splunkd logs on universal forwarder. Does this affect the logs being forwarded to indexer?

The only admin password provided was during the first start of uf after the install. I did update admin password from CLI as well but still getting the same Warning.

Tags (1)
0 Karma
Get Updates on the Splunk Community!

See Splunk Platform & Observability Innovations at Cisco Live EMEA

Hi Splunkers, Learn about what’s next for Splunk Platform at Cisco Live EMEA.  Data silos are a big challenge ...

The OpenTelemetry Certified Associate (OTCA) Exam

What’s this OTCA exam? The Linux Foundation offers the OpenTelemetry Certified Associate (OTCA) credential to ...

From Manual to Agentic: Level Up Your SOC at Cisco Live

Welcome to the Era of the Agentic SOC   Are you tired of being a manual alert responder? The security ...