Getting Data In

Splunk Stream with Netflow Data

Crashfry
Path Finder

I have the data coming into the system, I see the Stream addon manipulating the data to look a specific way. Though the issue seems to be with the dashboards do not seem to reflect any of the data. In my situation, I have a heavy forwarder setup to capture netflow data from our firewalls ( so it's acting as a collector ) but the dashboards do not seem to populate with the data from netflow.
I've seen some previous questions but this doesn't seem to be answered in them - anyone else running into this?

Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Your Feedback. Our Roadmap. Visit the PX Feedback Booth at .conf26

You use Splunk every day, come and help shape what's next.  Save Your Seat: Product-Focused Sessions at ...

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...

Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas

Watch Now Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas     Do you ever feel ...