Getting Data In

Why is the Http Event Collector not working in Splunk Enterprise trial?

amenitylab
New Member

I've installed the Splunk enterprise trial and got this url http://localhost:8000/en-US/app/launcher/home.
I've enabled the HEC feature. and unchecked the "enable ssl" box in the global settings.
tried to run this command :
curl -k http://localhost:8088/services/collector/event/1.0 -H "Authorization: Splunk TOKEN-VALUE" -d '{"event": "hello world"}'
but I get
Failed to connect to localhost port 8088: Connection refused
Can I use the HTTP Event Collector with Splunk Free? If Yes How?

0 Karma

novice
New Member

Can you please let us know, if we have any solution for this, used splunk docker in localhost, able to connect to localhost:8000 but not able to connect to localhost:8088, getting Couldn't connect to server error.

0 Karma

skoelpin
SplunkTrust
SplunkTrust

All enterprise features are enabled on the trial version. Can you do a telnet via port 8088?

8088 is the default HEC port

0 Karma
Get Updates on the Splunk Community!

Splunk MCP & Agentic AI: Machine Data Without Limits

  Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization ...

Finding Based Detections General Availability

Overview  We’ve come a long way, folks, but here in Enterprise Security 8.4 I’m happy to announce Finding ...

Get Your Hands Dirty (and Your Shoes Comfy): The Splunk Experience

Hands-On Learning and Technical Seminars  Sometimes, you just need to see the code. For those looking for a ...