Getting Data In

Unable to connect to Splunk Cloud from Kubernetes using Splunk collector

yiyo33
Loves-to-Learn

Hello All. Im trying to install the splunk conector inside our AKS cluster to collect app logs to send to our splunk cloud instance. I´m following this tutorial. 

So I downloaded the chart and set the values.yaml with our splunk cloud instance and our token like follows:

yiyo33_0-1667846721749.png

deamonsets were deployed and pods are running, but if I check logs I´m seeing a timeout error . 

 

yiyo33_1-1667847004876.png

So I got into the container a run a curl command to our splunk instance and was able to connect so no firewall or anything there in the middle. 

What could I possible me missing here? is the url like in the example the correct way to configure this? I mean like: 

 
The token is correct according to our config (otherwise I believe it would give a 401/403 or something in the error logs). In this case it´s trying to connect but without success with that timeout error
 
Anything else I need to be checking?
 
Thank you.
Labels (2)
0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Event Series: Level up your SOC: Advancing with Splunk Enterprise Security

AI has fundamentally raised the stakes for security operations, and this three-part series is your guide to ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...