Splunk Enterprise

"Not allowed non-RFC compliant HTTP traffic"

HaimVital
New Member

Our client uses Splunk and it blocks one of our microservices with the error "Not allowed non-RFC compliant HTTP traffic", i.e when accessing the url prod-ec-api.powtoon.co/api/v2/cb/area .

Does anyone who have Splunk can verify that above url is not accessible with Splunk running?

Also, what does the error mean? That the protocol which is used by us is not an HTTP/TCP/IP/ICMP/HTTPS/UDP protocol? If so how does Splunk determines the protocol? From the header of the first request packet? Is it a mutation of the packets that's happening and causes the error?

Please assist, we are great guys with a great product and a cool gang is missing one of our great features.

0 Karma

PickleRick
SplunkTrust
SplunkTrust

How does "Splunk block one of your microservices"? What do you mean by that?

0 Karma

bowesmana
SplunkTrust
SplunkTrust

What does that url have to do with Splunk? 

Google can tell you plenty about that type of message.

0 Karma
Get Updates on the Splunk Community!

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Shape the Future of Splunk: Join the Product Research Lab!

Join the Splunk Product Research Lab and connect with us in the Slack channel #product-research-lab to get ...