Splunk Search

Problem with add TCP or UDP

michael82
New Member

When i will add tcp port 514 then comes that:
Encountered the following error while trying to save: In handler 'raw': Unable to find pipeline with name tcp.

So when i enable comes:
"Error occurred attempting to enable 514: In handler 'raw': Unable to find pipeline with name tcp.."

Why come this errors?

0 Karma

michael82
New Member

i have found that problem. The SplunkLightForwarder was enable.-.-

sorry for the question

0 Karma

MarioM
Motivator

2 possible reasons:

-Another application is using TCP port 514

-In your Splunk there is somewhere an inputs.conf with tcp 514 (search in splunk/etc/system/local or in any app folder splunk/etc/apps//default or local)

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Agentic Operations Start with Context: Build the Right Data Foundation

Agentic Operations Start with Context: Build the Right Data Foundation   By Courtney Wright, Product Marketing ...

Assisted, Augmented or Agentic? Choose Your Splunk Starting Point

Assisted, Augmented or Agentic? Choose Your Splunk Starting Point   By Courtney Wright, Product Marketing ...

Session 2 | Beyond the Thread: Operationalizing AI with Confidence

Session 2   Beyond the Thread: Operationalizing AI with Confidence    The true power of the Cisco Data Fabric ...