Splunk Cloud Platform

HTTP Event Collector- Is there something wrong with this curl command?

andrew15
Loves-to-Learn Lots

Currently trying to test an HTTP event collector token by directly sending events to the cloud before we use the HEC for a OpenTelemetry Connector, but we are getting stuck at 403 Forbidden error. I can see the successful request going through our firewall. Is there something wrong with this curl command? 

Not sure if it affects anything but we are still on the Splunk Cloud Classic, not Victoria. 

Screenshots attached, appreciate any help we can get!

andrew15_1-1684954283713.png

andrew15_2-1684954360716.png

 

 

 

 

Labels (2)
0 Karma

rnowitzki
Builder

Hi @andrew15 ,

Are you sure about the port (443)?  Usually it's 8088, I guess also for Splunk Cloud (Classic).
There are some Examples in the Docs.

Ralph

 

 

--
Karma and/or Solution tagging appreciated.
0 Karma
Get Updates on the Splunk Community!

.conf24 | Day 0

Hello Splunk Community! My name is Chris, and I'm based in Canberra, Australia's capital, and I travelled for ...

Enhance Security Visibility with Splunk Enterprise Security 7.1 through Threat ...

(view in My Videos)Struggling with alert fatigue, lack of context, and prioritization around security ...

Troubleshooting the OpenTelemetry Collector

  In this tech talk, you’ll learn how to troubleshoot the OpenTelemetry collector - from checking the ...