Splunk Enterprise

"Not allowed non-RFC compliant HTTP traffic"

HaimVital
New Member

Our client uses Splunk and it blocks one of our microservices with the error "Not allowed non-RFC compliant HTTP traffic", i.e when accessing the url prod-ec-api.powtoon.co/api/v2/cb/area .

Does anyone who have Splunk can verify that above url is not accessible with Splunk running?

Also, what does the error mean? That the protocol which is used by us is not an HTTP/TCP/IP/ICMP/HTTPS/UDP protocol? If so how does Splunk determines the protocol? From the header of the first request packet? Is it a mutation of the packets that's happening and causes the error?

Please assist, we are great guys with a great product and a cool gang is missing one of our great features.

0 Karma

PickleRick
SplunkTrust
SplunkTrust

How does "Splunk block one of your microservices"? What do you mean by that?

0 Karma

bowesmana
SplunkTrust
SplunkTrust

What does that url have to do with Splunk? 

Google can tell you plenty about that type of message.

0 Karma
Get Updates on the Splunk Community!

Upcoming Webinar: Unmasking Insider Threats with Slunk Enterprise Security’s UEBA

Join us on Wed, Dec 10. at 10AM PST / 1PM EST for a live webinar and demo with Splunk experts! Discover how ...

.conf25 technical session recap of Observability for Gen AI: Monitoring LLM ...

If you’re unfamiliar, .conf is Splunk’s premier event where the Splunk community, customers, partners, and ...

A Season of Skills: New Splunk Courses to Light Up Your Learning Journey

There’s something special about this time of year—maybe it’s the glow of the holidays, maybe it’s the ...