Getting Data In

access to splunk.com

a_splunk_user
Path Finder

Hi -

My indexer (on Windows) is behind a firewall which generally disallows outbound traffic from this server, but I want to configure it to access splunk.com to get downloads.

I ping Splunk.com and it resolves to 54.69.58.243 .
I put in a static DNS entry for the site in the server host file.
In the firewall I allow https from the indexer internal IP to the Splunk.com IP.
I see it is not blocked in the firewall, and I am able to telnet to it on port 443 from the server.

But if I attempt to browse the page it will not load, either by URL or IP.
I suspect there are other IP addresses that are needed, but this is just a guess.
Any ideas?

Thanks!

Tags (1)
0 Karma

harsmarvania57
Ultra Champion

Hi,

As far as I remember, you need to whitelist below IPs in firewall with port 443/TCP.

Non-authoritative answer:
Name:   splunkbase.splunk.com
Address: 35.165.43.73
Name:   splunkbase.splunk.com
Address: 54.186.82.128
Name:   splunkbase.splunk.com
Address: 52.89.105.73
0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.
Get Updates on the Splunk Community!

Tech Talk Recap | Mastering Threat Hunting

Mastering Threat HuntingDive into the world of threat hunting, exploring the key differences between ...

Observability for AI Applications: Troubleshooting Latency

If you’re working with proprietary company data, you’re probably going to have a locally hosted LLM or many ...

Splunk AI Assistant for SPL vs. ChatGPT: Which One is Better?

In the age of AI, every tool promises to make our lives easier. From summarizing content to writing code, ...