Getting Data In

SC4S and McAfee EPO not working?

domino30
Path Finder

So I have been trying to get SC4S working and I know where the docs are--> https://splunk.github.io/splunk-connect-for-syslog/main/

I have followed this well and gotten SC4S event in and have tested HEC data in successfully.

However for some reason I cant get Epo data in I am attaching image of my env_file and proof that I got SC4S working.  as well as a concern.

I need to know what I should change.

Thanks.

0 Karma

elf337
Loves-to-Learn

i failed too... end up with setting up syslog-ng with TLS. 

0 Karma
Get Updates on the Splunk Community!

Application management with Targeted Application Install for Victoria Experience

  Experience a new era of flexibility in managing your Splunk Cloud Platform apps! With Targeted Application ...

Index This | What goes up and never comes down?

January 2026 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Splunkers, Pack Your Bags: Why Cisco Live EMEA is Your Next Big Destination

The Power of Two: Splunk + Cisco at "Ludicrous Scale"   You know Splunk. You know Cisco. But have you seen ...