Splunk Search

Unable to search for logs from console

andydong
New Member

Somehow i have not got logs from universal forwarder servers since Sep 11, How to find out the reason ?

alt text

Tags (1)
0 Karma

adonio
Ultra Champion
0 Karma

renjith_nair
Legend

@andydong ,
Is it from all servers or only few? Hows your deployment architecture looks like?(IDC,standalone,HFs)
First of all , check in the logs of forwarders to see if there are any connection error.

---
What goes around comes around. If it helps, hit it with Karma :slightly_smiling_face:
0 Karma
Get Updates on the Splunk Community!

See just what you’ve been missing | Observability tracks at Splunk University

Looking to sharpen your observability skills so you can better understand how to collect and analyze data from ...

Weezer at .conf25? Say it ain’t so!

Hello Splunkers, The countdown to .conf25 is on-and we've just turned up the volume! We're thrilled to ...

How SC4S Makes Suricata Logs Ingestion Simple

Network security monitoring has become increasingly critical for organizations of all sizes. Splunk has ...