Getting Data In

Unable to forward syslog from NetScaler Service VMs (SVMs)


We have asked our customers to forward syslog from Netscaler Service VMS (SVMs) to our Splunk syslog servers. We have tried tracroute, sending dummy data to syslog servers, but there weren't any traffics sent out at all.  This is not related to Splunk, but I don't know if anyone encountered the same issues and there are any suggestions/workarounds.


Labels (1)
0 Karma


Have you enabled the NetScaler input? And/or have you checked firewall rules?

Some additional troubleshooting tips are here:


An upvote would be appreciated and Accept Solution if it helps!
0 Karma
Did you miss .conf21 Virtual?

Good news! The event's keynotes and many of its breakout sessions are now available online, and still totally FREE!