We are using the latest version of Splunk Cloud. I have configured HTTP Event Collection (HEC) token under "Settings" in the UI. It is also worth noting that we are using SSO for user authentication.
I have attempted (numerous times) and failed to get a connection using curl (leveraging the information contained in this article: https://docs.splunk.com/Documentation/SplunkCloud/latest/Data/HTTPEventCollectortokenmanagement).
All I get is "Failed to connect...".
I am wondering if there is something unique I need to do for Splunk Cloud, something unique with SSO, or if I can even send directly to Splunk Cloud (does the connection have to originate from a forwarder for example).
Any advice is appreciated.
Here is the test I am running and the error I am seeing: