Splunk Enterprise

Fresh installation of Splunk UF 8.0.5 having error- How to resolve?

dhimanv
Loves-to-Learn Lots

Hello,

 

I am performing Splunk UF installation of version 8.0.5 and getting following error logged in error logs:

==> splunkd.log <==
08-23-2022 10:00:29.018 -0400 WARN TcpOutputProc - Pipeline data does not have indexKey. [_conf] = |||\n
08-23-2022 10:00:29.018 -0400 WARN TcpOutputProc - The event is missing source information. Event : no raw data

I am not sure what is this error means. I can see that sources defined in config files are sending logs to Splunk.

Could someone suggest how I can fix these errors to make sure no data lose there?

Labels (2)
Tags (1)
0 Karma
Get Updates on the Splunk Community!

Observe and Secure All Apps with Splunk

  Join Us for Our Next Tech Talk: Observe and Secure All Apps with SplunkAs organizations continue to innovate ...

Splunk Decoded: Business Transactions vs Business IQ

It’s the morning of Black Friday, and your e-commerce site is handling 10x normal traffic. Orders are flowing, ...

Fastest way to demo Observability

I’ve been having a lot of fun learning about Kubernetes and Observability. I set myself an interesting ...