- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content

b_chris21
Communicator
04-12-2022
03:34 AM
Hello,
I am collecting logs from various endpoints via UFs into a Splunk HF.
One of the data inputs is firewall logs via Syslog on port 514.
My question is:
Will I have to set Data Input on port 514 on Splunk Cloud too? Or all logs will be globally forwarded on port 9997 which is already set?
Thanks!
1 Solution
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Stefanie
Builder
04-12-2022
05:20 AM
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Stefanie
Builder
04-12-2022
05:20 AM
The logs will be forwarded from the HF to Splunk Cloud on port 9997.
