Greetings, I have Splunk 9.1.1 trying to import an aruba 7210 into splunk using the aruba app with udp 514. Sourcetype: aruba:syslog. I have other devices (cisco) going into the same splunk instance and they are reporting ok. the splunk server can ping the aruba and vice versa. should i try any other source types? anything else I should look for to search under the hood to see why communication is not occurring?
Thank you,