Splunk Enterprise

Splunk & IPv6

DTERM
Contributor

I'm reading in Splunk answers that pure IPv6 host is not supported. Are there any plans on adding IPv6 support to the application? I'm trying to add a universal forwarder to an IPv6 only host. But it seems the heavy forwarder will not listen on IPv6 only address. Any way to get around that?

Tags (1)
1 Solution

mw
Splunk Employee
Splunk Employee

I believe it's being worked on, but couldn't provide a date as to when ipv6 support will appear. I think the only way around it would be to establish an ipv4 address on that host.

View solution in original post

kluzz
Engager

I figured I'd update this, since this question has a lot of views...

Splunk does support IPv6 for communication, however it's not switched on by default. You probably cannot switch IPv4 off completely, but there's no need to give your server a v4 address just because v4 is enabled in Splunk.

mw
Splunk Employee
Splunk Employee

I believe it's being worked on, but couldn't provide a date as to when ipv6 support will appear. I think the only way around it would be to establish an ipv4 address on that host.

Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Deep Dive: Accelerate threat investigation with Splunk’s AI Assistant in Security

AI is one of the biggest topics in the market today, and for security teams, its value goes far beyond the ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Detection Engineering Office Hours: Real-World Troubleshooting & Q&A

[REGISTER HERE] This thread is for the Community Office Hours session on Detection Engineering Office Hours: ...