Getting Data In

Kinesis Firehose: Receiving error message, unable to open support ticket on free trial

mycloudsplunk
New Member

Hi,
I'm ingesting Cloudwatch logs to Splunk cloud HEC using Kinesis firehose stream. But I'm getting the error as "Could not connect to the HEC endpoint. Make sure that the certificate and the host are valid." I referred following doc "https://docs.splunk.com/Documentation/AddOns/released/Firehose/RequestFirehose" in which they mentioned to "Submit a case on the Splunk Support Portal. In the case, ask Splunk Support to enable HTTP event collector and create or modify an elastic load balancer to use with this add-on.
Wait for Splunk Support to perform the necessary setup and confirm with you once the HTTP event collector is enabled and your elastic load balancer is ready for use. Splunk Support will confirm the URL that you should use for your HTTP event collector endpoint. It should match this format: https://http-inputs-firehose-.splunkcloud.com:443. "

But right now I'm using the trial version in which I don't have the privilege to open a support ticket and I want to test Firehose Integration with Splunk. Please help here.

0 Karma

mycloudsplunk
New Member

Hi @amiracle , Thanks for your reply. I didn't get your answer. Which team are you referring to in the sentence 'contact your team and they can help you validate it through a Splunk Cloud POC. '?

0 Karma

amiracle
Splunk Employee
Splunk Employee

You will not be able to send Kinesis Data Firehose to the trial Splunk Cloud instances. If you want to test this out, please contact your team and they can help you validate it through a Splunk Cloud POC.

0 Karma

amiracle
Splunk Employee
Splunk Employee

I’m sorry , I meant your Splunk Account Team.

0 Karma
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk on November 6 at 11AM PT, and empower your SOC to reach new heights! Duration: ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...