hello,
I am trying to add to my Splunk some Linux via syslog, but when I try to add the input separately it sends me the next error:
Parameter name: UDP port 514 is not available.
If I try to disable and add a new input it lets me do it, but I receive logs of only one input.
What could be the problem?.
My Splunk is installed on a windows server.
inputs.conf spec says explicitely that "Only one stanza per port number is currently supported." for UDP inputs.
https://docs.splunk.com/Documentation/Splunk/latest/Admin/Inputsconf#UDP:
Are you trying to create a 2nd input using the same port? Only one input can be configured for each port.
Hello Janispelss,
I tried to do that in splunk with SO Centos and works, but in splunk with Windows doesn´t works.