Our team has recently upgraded from Splunk 7.1.5 to 8.0.1 and found that we are now seeing an increased # of HEC issues following the upgrade.
Has anyone else experienced this issue?
Any ideas / thoughts on a fix?
Please be more specific. What issues are you seeing?
We started to see the following error appear:
ERROR TcpInputProc - Encountered Streaming S2S error=Received reference to unknown channel_code