when i look into the Splunk logs it showing only few logs
other logs are missing with error "connection aborted error 104 connection reset by peer"
Could anyone explain why it occurs?
we need to change the end URL(for getting logs) to fix this issue
What does this mean? What did you actually change?
this is actually issue in end URL. we used old Rest URL that why we not getting logs which throws the error.
we modified that with new Rest URL
check over your TLS/SSL certs, config and settings on all endpoints.
Could anyone please help?
Hi. Are you truing to have allok into the log files or through a search request. In case it is a search request, can you please rovide it?
allok means ?
Could you please explain what is that?
we have written some script to get the logs..its not search query..we are not getting logs into index properly
Could anyone please help me in this issue
So you are using an HEC communication to get the log info in splunk?
we are using rest API link to get the log information into the splunk
So you did follow this?
here what step i need to follow?
could anyone please help in this issue?
Any update from any one?
Sorry that I wrote too fast. allok => a look. So you try to get the logs in Splunk. How are you trying to do that? Through http?
we are getting using http