Getting Data In

Unable to receive data vis splunk connect for syslog

sombhtr239
Explorer

Hello,

I am trying this for the first time and installed sc4s in my HF server, connected the sc4s with HF using HEC URL and token. As checked I am receiving data for sc4s events from HF. However when the syslog is being forwarded from netscaler over ports not receiving any data. 

Apart from installation of sc4s and updating the hec url and token, I have enabled UDP port- 514 in iptables to accept data. 

Really appreciate if anyone can help me in resolving this.

Labels (2)
Tags (1)
0 Karma
Get Updates on the Splunk Community!

Detecting Remote Code Executions With the Splunk Threat Research Team

WATCH NOWRemote code execution (RCE) vulnerabilities pose a significant risk to organizations. If exploited, ...

Enter the Splunk Community Dashboard Challenge for Your Chance to Win!

The Splunk Community Dashboard Challenge is underway! This is your chance to showcase your skills in creating ...

.conf24 | Session Scheduler is Live!!

.conf24 is happening June 11 - 14 in Las Vegas, and we are thrilled to announce that the conference catalog ...