Monitoring Splunk

How to resolve this error: TCPOutAutoLB-0 - More than 70% of forwarding destinations have failed

bugnet
Path Finder

Hi all,

I have Splunk instance (standalone) which I get the following error:

alt text

On the forwarding server the outputs.conf is OK. Beside that port 9999 is not open.

Labels (1)
Tags (1)

pdouglasjr
New Member

Are you using HTTPS? And if so, have the certificates configured for HTTPS been recently updated?

0 Karma

saichaitanya
New Member

recently I enable the ssl and sso for the HF  when we  open that Hf the error is showing that below error

 

TCPOutAutoLB-0 - More than 70% of forwarding destinations have failed

 

please give me the solution.. ASAP

thank  you 

0 Karma

highsplunker
Contributor

Hi ! Did you solve the problem? Please tell us how? With vikramyadav's answer below?

In my case, i'm SURE it's not about network connections (they are OK).
In my case it's probably becase i enlarged RAM and CPU capabilities.
Guys could you comment on this?

0 Karma

vikramyadav
Contributor

You are trying to forward some data, But you are not able to forward your data because your firewall is blocking so you can open your 9999 port.
For Windows click on below link
https://www.tomshardware.com/news/how-to-open-firewall-ports-in-windows-10,36451.html

And for Linux click below
https://www.cyberciti.biz/faq/howto-rhel-linux-open-port-using-iptables/

If you directly disable your firewall you don't have to follow the above steps, But I won't recommend this step as its harmful.

Thank You.

Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Observability Simplified: Combining User Experience, Application Performance & ...

Tech Talk Observability Simplified: Combining User Experience, Application Performance & Network ...

Event Series May & June: From Network Visibility to Service Intelligence

Unifying the Network: Moving from Alert Noise to Service Intelligence with Splunk ITSI In today’s hybrid ...