Getting Data In

forwarder but getting error ,Could not send data to output queue

kml_uvce
Builder

hi

i have installed a universal forwarder but getting this error and not seeing any monitoring files data in splunk

5:24:21 PM Karthick Venkata: 06-05-2012 04:39:10.891 -0700 INFO WatchedFile - Will begin reading at offset=2555904 for file='c:\inetpub\logs\logfiles\W3SVC1\u_ex101201.log'.

06-05-2012 04:39:56.831 -0700 INFO TailingProcessor - Could not send data to output queue (parsingQueue), retrying...

06-05-2012 04:40:01.839 -0700 INFO TailingProcessor - ...continuing.

06-05-2012 04:40:15.895 -0700 INFO TailingProcessor - Could not send data to output queue (parsingQueue), retrying...

06-05-2012 04:40:20.903 -0700 INFO Tail

kamal singh bisht
Tags (2)
1 Solution

sdaniels
Splunk Employee
Splunk Employee

Does anything here help you? Similar issue so might help you find what's causing your parsingQueue to be filled up.

http://splunk-base.splunk.com/answers/5590/could-not-send-data-to-the-output-queue

View solution in original post

sdaniels
Splunk Employee
Splunk Employee

Does anything here help you? Similar issue so might help you find what's causing your parsingQueue to be filled up.

http://splunk-base.splunk.com/answers/5590/could-not-send-data-to-the-output-queue

kml_uvce
Builder

this error is in splunkd.log file

kamal singh bisht
0 Karma
Get Updates on the Splunk Community!

Application management with Targeted Application Install for Victoria Experience

  Experience a new era of flexibility in managing your Splunk Cloud Platform apps! With Targeted Application ...

Index This | What goes up and never comes down?

January 2026 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Splunkers, Pack Your Bags: Why Cisco Live EMEA is Your Next Big Destination

The Power of Two: Splunk + Cisco at "Ludicrous Scale"   You know Splunk. You know Cisco. But have you seen ...