Splunk Cloud Platform

Issues in SingulrAI-Splunk Integration

msatish
Path Finder

We created Splunk Token and added in SingulrAI environment along with splunk endpoint deatils(Site URL and Splunk management port) to send logs. However, Singulr AI was unable to pick up Splunk logs due to connectivity or network timeout issues. Singulr AI support mentioned they are seeing connectivity / network timeout issues with the provided splunk domain + port from the Singulr collector (deployed in our organization's environment). What is the reason?

Labels (1)
0 Karma

livehybrid
SplunkTrust
SplunkTrust

Hi @msatish 

Are you able to test the connectivity from your SingulrAI collector within your organisation to the Splunk instance on the URL/port using something like netcat/curl?

Please let me know how you get on and consider adding karma to this or any other answer if it has helped.
Regards

Will

0 Karma
Get Updates on the Splunk Community!

What the End of Support for Splunk Add-on Builder Means for You

Hello Splunk Community! We want to share an important update regarding the future of the Splunk Add-on Builder ...

Solve, Learn, Repeat: New Puzzle Channel Now Live

Welcome to the Splunk Puzzle PlaygroundIf you are anything like me, you love to solve problems, and what ...

Building Reliable Asset and Identity Frameworks in Splunk ES

 Accurate asset and identity resolution is the backbone of security operations. Without it, alerts are ...