Monitoring Splunk

Forwarder and indexer communication through port 8089 ?

pgadhari
Builder

Hi All,

Whether port 8089 should be opened bi-directional or uni-directional between forwarder and indexer ? In our setup, there is a firewall between forwarder and indexers, and I need to tell the firewall team about the same. I am asking them to open it bi-directional, but they are not allowing it. They need some Splunk documentation to support this as evidence.

Please clarify the direction and also point me some Splunk document, wherein I can show them as evidence, if bi-directional port opening is required.

Thanks
Pankaj

0 Karma

pgadhari
Builder

I have seen that thread before, but it is not clearly mentioned that whether 8089 should be uni-directional or bi-directional ? Can you tell me which direction is applicable 🙂 ?

Thanks
Pankaj

renems
Communicator

How about this forum question I asked a while ago? Would that count as evidence? 🙂
https://answers.splunk.com/answers/58888/what-are-the-ports-that-i-need-to-open.html#comment-365835

0 Karma
Get Updates on the Splunk Community!

Extending Observability Content to Splunk Cloud

Watch Now!   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to leverage ...

More Control Over Your Monitoring Costs with Archived Metrics!

What if there was a way you could keep all the metrics data you need while saving on storage costs?This is now ...

New in Observability Cloud - Explicit Bucket Histograms

Splunk introduces native support for histograms as a metric data type within Observability Cloud with Explicit ...