Monitoring Splunk

After starting Splunk universal Forwarder , i am not able to access to website <ip:8000>

vibhava
New Member

I install Splunk universal Forwarder and ran it, it started but i am not able to access the http site after entering the ip with port number on linux

Labels (1)
0 Karma

Richfez
SplunkTrust
SplunkTrust

The Universal Forwarder has no UI.  Splunk Web isn't available on it, so there's no http site to go to.

https://docs.splunk.com/Documentation/Splunk/9.2.0/Forwarding/Typesofforwarders

To get a UI like that *on a forwarder* you'll need to install a Heavy Forwarder which is actually just the full Splunk server installation - what makes it a HF instead of just "Regular Splunk" is how it's configured later to both receive and 'forward' data in to another Splunk instance.

Or just an install of the full Splunk installation.

0 Karma

isoutamo
SplunkTrust
SplunkTrust

Hi

it’s like @Richfez said. UF hasn’t any UI component. Earlier it has management port enabled, but currently even it is disabled by default.

Why you are thinking that you need a GUI on UF? Usually it has configured by DS or other tool wit apps.

r. Ismo

0 Karma
Get Updates on the Splunk Community!

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Stronger Security with Federated Search for S3, GCP SQL & Australian Threat ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...