Why is thereTCPOutAutoLB-0 and TailReader-0 error on fresh install?



I just made a fresh install of Splunk server on a CentOS 7 machine.
RPM install, configuration to launch splunk as a splunk user with systemctl etc All good.

Right now in my health check I have TCPOutAutoLB-0 and TailReader-0 in error.
I don't have any message to go with it. Just an error status

Any way I can check those error with a CLI? Any idea of what is going on?

I havn't ever start to index any file yet.

I have this warning to : he TCP output processor has paused the data flow. Forwarding to output group default-autolb-group has been blocked for 10 seconds. This will probably stall the data flow towards indexing and other network outputs. Review the receiving system's health in the Splunk Monitoring Console. It is probably not accepting data.

I don't know where to start.



Labels (2)
0 Karma
1 Solution


I have made a loop with a local output file, all good now.

View solution in original post

0 Karma


I have made a loop with a local output file, all good now.

0 Karma


Hi stephanedeck,

could you please specify what do you mean by making a loop with a local output file?

Have you copied the contents of the default/outputs.conf file into local/outputs.conf file?

Answer is much appreciated


@baya151 ,  yes crate a copy of default/outputs.conf file into local/outputs.conf 

0 Karma
Get Updates on the Splunk Community!

Understanding Generative AI Techniques and Their Application in Cybersecurity

Watch On-Demand Artificial intelligence is the talk of the town nowadays, with industries of all kinds ...

.conf24 | Registration Open!

Hello, hello! I come bearing good news: Registration for .conf24 is now open!   conf is Splunk’s rad annual ...

Using the Splunk Threat Research Team’s Latest Security Content

REGISTER HERE Tech Talk | Security Edition Did you know the Splunk Threat Research Team regularly releases ...