- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Why am I unable to add a second input Parameter name and the UDP port 514 is not available?

Isaor
New Member
04-26-2018
12:27 PM
hello,
I am trying to add to my Splunk some Linux via syslog, but when I try to add the input separately it sends me the next error:
Parameter name: UDP port 514 is not available.
If I try to disable and add a new input it lets me do it, but I receive logs of only one input.
What could be the problem?.
My Splunk is installed on a windows server.
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content

FrankVl
Ultra Champion
04-27-2018
12:16 PM
inputs.conf spec says explicitely that "Only one stanza per port number is currently supported." for UDP inputs.
https://docs.splunk.com/Documentation/Splunk/latest/Admin/Inputsconf#UDP:
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
janispelss
Path Finder
04-26-2018
11:16 PM
Are you trying to create a 2nd input using the same port? Only one input can be configured for each port.
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content

Isaor
New Member
04-27-2018
10:14 AM
Hello Janispelss,
I tried to do that in splunk with SO Centos and works, but in splunk with Windows doesn´t works.
