Splunk Enterprise

Splunk & IPv6

DTERM
Contributor

I'm reading in Splunk answers that pure IPv6 host is not supported. Are there any plans on adding IPv6 support to the application? I'm trying to add a universal forwarder to an IPv6 only host. But it seems the heavy forwarder will not listen on IPv6 only address. Any way to get around that?

Tags (1)
1 Solution

mw
Splunk Employee
Splunk Employee

I believe it's being worked on, but couldn't provide a date as to when ipv6 support will appear. I think the only way around it would be to establish an ipv4 address on that host.

View solution in original post

kluzz
Engager

I figured I'd update this, since this question has a lot of views...

Splunk does support IPv6 for communication, however it's not switched on by default. You probably cannot switch IPv4 off completely, but there's no need to give your server a v4 address just because v4 is enabled in Splunk.

mw
Splunk Employee
Splunk Employee

I believe it's being worked on, but couldn't provide a date as to when ipv6 support will appear. I think the only way around it would be to establish an ipv4 address on that host.

Get Updates on the Splunk Community!

Splunk MCP & Agentic AI: Machine Data Without Limits

  Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization ...

Finding Based Detections General Availability

Overview  We’ve come a long way, folks, but here in Enterprise Security 8.4 I’m happy to announce Finding ...

Get Your Hands Dirty (and Your Shoes Comfy): The Splunk Experience

Hands-On Learning and Technical Seminars  Sometimes, you just need to see the code. For those looking for a ...