Splunk Enterprise

Symantec WSS integration ingestion problem

jmallorquindelo
Engager

Hi,

We have successfully integrate Symantec WSS integration in our platform, and we start to recieve events but since 3 weeks ago where the Symantec WSS product was fully deployed in the company and we start increase the volume of data the process of ingestion has stopped.

Making a debub of the proccess we have identify that the .zip files that the Heavy Forwarder is downloading are not well formed and when Splunk monitor those files splunk is not able to finish, have someone suffer this kind of error? Any advice?

Thanks for the help.

Labels (1)
0 Karma
Get Updates on the Splunk Community!

Observe and Secure All Apps with Splunk

  Join Us for Our Next Tech Talk: Observe and Secure All Apps with SplunkAs organizations continue to innovate ...

Splunk Decoded: Business Transactions vs Business IQ

It’s the morning of Black Friday, and your e-commerce site is handling 10x normal traffic. Orders are flowing, ...

Fastest way to demo Observability

I’ve been having a lot of fun learning about Kubernetes and Observability. I set myself an interesting ...