Splunk Enterprise

Splunk diag upload outbound traffic

tnguyengtn
Engager

In a locked down environment where outbound traffic is explicit, what is the IP range or URL to facilitate the "splunk diag --upload" command?

 

Getting the following error:

Unable to fetch case list: None

Cannot validate upload options, aborting...

Labels (1)
0 Karma
1 Solution

tnguyengtn
Engager

The solution is to allow the following:

Protocol: HTTPS
Port: 443
URL: https://api.splunk.com/

View solution in original post

tnguyengtn
Engager

The solution is to allow the following:

Protocol: HTTPS
Port: 443
URL: https://api.splunk.com/

vigneshnarendra
Engager

Hello, 

You are missing a key parameter.

./splunk diag --upload --case-number=<casenumber> --upload-user=<username>--upload-description="blah blah"

Tags (1)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

You should contact Splunk Support for help with that.

---
If this reply helps you, Karma would be appreciated.
0 Karma
Get Updates on the Splunk Community!

Splunk Security Content for Threat Detection & Response, Q1 Roundup

Join Principal Threat Researcher, Michael Haag, as he walks through:An introduction to the Splunk Threat ...

Splunk Life | Happy Pride Month!

Happy Pride Month, Splunk Community! &#x1f308; In the United States, as well as many countries around the ...

SplunkTrust | Where Are They Now - Michael Uschmann

The Background Five years ago, Splunk published several videos showcasing members of the SplunkTrust to share ...