Splunk Enterprise

"Not allowed non-RFC compliant HTTP traffic"

HaimVital
New Member

Our client uses Splunk and it blocks one of our microservices with the error "Not allowed non-RFC compliant HTTP traffic", i.e when accessing the url prod-ec-api.powtoon.co/api/v2/cb/area .

Does anyone who have Splunk can verify that above url is not accessible with Splunk running?

Also, what does the error mean? That the protocol which is used by us is not an HTTP/TCP/IP/ICMP/HTTPS/UDP protocol? If so how does Splunk determines the protocol? From the header of the first request packet? Is it a mutation of the packets that's happening and causes the error?

Please assist, we are great guys with a great product and a cool gang is missing one of our great features.

0 Karma

PickleRick
SplunkTrust
SplunkTrust

How does "Splunk block one of your microservices"? What do you mean by that?

0 Karma

bowesmana
SplunkTrust
SplunkTrust

What does that url have to do with Splunk? 

Google can tell you plenty about that type of message.

0 Karma
Get Updates on the Splunk Community!

Splunk Mobile: Your Brand-New Home Screen

Meet Your New Mobile Hub  Hello Splunk Community!  Staying connected to your data—no matter where you are—is ...

Introducing Value Insights (Beta): Understand the Business Impact your organization ...

Real progress on your strategic priorities starts with knowing the business outcomes your teams are delivering ...

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...