Installation

New to Splunk, Fresh 7.1 install, "0400 WARN TcpOutputProc - Tcpout Processor" error.

jross19
Engager

The following error repeats every 20 seconds in the Health Status of Splunkd message box. Splunk is not pulling any data after initial installation and I suspect this is a good place to start. I have search for a few hours with no luck.

•05-24-2018 10:32:13.184 -0400 WARN TcpOutputProc - Tcpout Processor: The TCP output processor has paused the data flow. Forwarding to output group default-autolb-group has been blocked for 700 seconds. This will probably stall the data flow towards indexing and other network outputs. Review the receiving system's health in the Splunk Monitoring Console. It is probably not accepting data.

Any help would be greatly appreciated. If additional information is need please advise.

Justin

Tags (1)
0 Karma
1 Solution

Azeemering
Builder

1) check indexers have enough space.
2) check License should not cross daily limit.

Also check if you have set your outputs.conf correctly:
http://docs.splunk.com/Documentation/Forwarder/7.1.0/Forwarder/Configureforwardingwithoutputs.conf

View solution in original post

Azeemering
Builder

1) check indexers have enough space.
2) check License should not cross daily limit.

Also check if you have set your outputs.conf correctly:
http://docs.splunk.com/Documentation/Forwarder/7.1.0/Forwarder/Configureforwardingwithoutputs.conf

jross19
Engager

After restarting all the VMs being monitored the error when away. I think too much info was shutting down the application. It is up now.

0 Karma
Get Updates on the Splunk Community!

September Community Champions: A Shoutout to Our Contributors!

As we close the books on another fantastic month, we want to take a moment to celebrate the people who are the ...

Splunk Decoded: Service Maps vs Service Analyzer Tree View vs Flow Maps

It’s Monday morning, and your phone is buzzing with alert escalations – your customer-facing portal is running ...

What’s New in Splunk Observability – September 2025

What's NewWe are excited to announce the latest enhancements to Splunk Observability, designed to help ITOps ...