Getting Data In

Why am I getting error "No connection could be made because the target machine actively refused it" trying to configure a universal forwarder with Splunk Cloud?

moihtraina
New Member

Hi All,

I am performing the POC for splunk cloud. However I have tried to configure Universal forwarder on the remote machine. When the remote machine tried to connect to splunk cloud platform it shows me the error below in the log?

Connect to x.x.x.x:9997 failed. No connection could be made because the target machine actively refused it

Help really appreciated!!!

0 Karma

paulwings
New Member

This error is a network-related error occurred while establishing a connection to the Server. It means that the error is occurring because there is no server listening at the hostname and port you assigned. It happens that something is preventing a connection to the port or hostname. Either there is a firewall blocking the connection or the process that is hosting the service is not listening on that specific port. This may be because it is not running at all or because it is listening on a different port. So, no connection can be established. The solution to this problem is that connect to the same end point your server is listening on.

0 Karma

esix_splunk
Splunk Employee
Splunk Employee

Also check your firewall settings to make sure local src and dest ports are not being blocked.

0 Karma

yannK
Splunk Employee
Splunk Employee

For SplunkCloud forwarders configuration you need to use the forwarder credentials app provided to you by your Sales Engineer.
And need to clean all the manual settings you may have done, or that may have been created by the install wizard.

Get Updates on the Splunk Community!

Welcome to the Splunk Community!

(view in My Videos) We're so glad you're here! The Splunk Community is place to connect, learn, give back, and ...

Tech Talk | Elevating Digital Service Excellence: The Synergy of Splunk RUM & APM

Elevating Digital Service Excellence: The Synergy of Real User Monitoring and Application Performance ...

Adoption of RUM and APM at Splunk

    Unleash the power of Splunk Observability   Watch Now In this can't miss Tech Talk! The Splunk Growth ...