- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Is it possible to Monitor network ports using Splunk Universal Forwarder?
sivaranjiniG
Path Finder
12-15-2020
06:48 PM
I have a Bluecoat device i want to monitor that device logs using UF. after have opened port from bluecoat to a relay server(Windows server with UF installed). But Data is not getting forwarded to Indexer..Please let me know if forwarding logs from network devices through tcp port using Splunk UF is possible..
If thats possible please suggest me some way to troubleshoot this issue(from Splunk UF data is not sent to Indexer)
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
saravanan90
Contributor
12-15-2020
09:01 PM
Yes, it is possible in UF that you can enable a UDP/TCP port and start receiving logs from network appliance. Check the firewall communication between network devices -- > UF --> Indexers.
