Splunk Enterprise

User computer generating tons of WARN HttpListener - Socket error from [ip address] while idling: Read Timeout

mcinteer
Engager

I am Splunk newbie. System installed and running happily. I have an alert for some types of Splunk Errors. The last few days I have been getting massive amounts of errors associated with a specific Universal Forwarder host:
WARN HttpListener - Socket error from [ip address] while idling: Read Timeout
I don't have any clue what this means or how to diagnose/address it, so any assistance would be appreciated.

Tags (1)

ebaileytu
Communicator

I am getting this same message in my splunkd.log on the indexers. Any idea what it means? Thanks!

0 Karma
Get Updates on the Splunk Community!

Credit Card Data Protection & PCI Compliance with Splunk Edge Processor

Organizations handling credit card transactions know that PCI DSS compliance is both critical and complex. The ...

Stay Connected: Your Guide to July Tech Talks, Office Hours, and Webinars!

What are Community Office Hours?Community Office Hours is an interactive 60-minute Zoom series where ...

Updated Data Type Articles, Anniversary Celebrations, and More on Splunk Lantern

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...