Deployment Architecture

pipelineInputChannel - ended without a done key

sdevadas
Path Finder

I keep getting these in the logs for a particular client where we have setup a scripted input which delivers the data through the light forwarder.

11-03-2010 16:13:24.763 WARN  PipelineInputChannel - channel "source::tcp:9903|host::PRDBNN301||remoteport::52186" ended without a done-key
11-03-2010 16:13:24.763 WARN  PipelineInputChannel - channel "source::s2s|host::PRDBNN301|s2s|remoteport::52186" ended without a done-key
11-03-2010 16:13:24.763 WARN  PipelineInputChannel - channel "source::wmi|host::PRDBNN301|wmi|remoteport::52186" ended without a done-key

The data from this client does not seem to reach the indexer (at least I cant search for it). This seems to work well in development.

Any pointers would be appreciated.

Splunk 4.1.5 Windows 2003 R2

Tags (1)

Lowell
Super Champion

sdevadas
Path Finder

I changed from the light forwarder to the heavy one and things work well.

0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In January, the Splunk Threat Research Team had one release of new security content via the Splunk ES Content ...

Expert Tips from Splunk Professional Services, Ensuring Compliance, and More New ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Observability Release Update: AI Assistant, AppD + Observability Cloud Integrations & ...

This month’s releases across the Splunk Observability portfolio deliver earlier detection and faster ...