I'm seeing the error below under messages in my Splunkenterprise console:
Missing or malformed messages.conf stanza for TCPOUT:FORWARDING_BLOCKED_Indexer IP ADDress_default-autolb-group DC-Host N...
I need details about what to check before I upgrade so I know if my deployment is ready to upgrade. What do I monitor, and how do I benchmark system health before the upgrade?
...rName: Leroy
FullName: Jenkins
So I went ahead and modified the inputs.conf on the central SplunkEnterprise server. Below is an example of the inputs.conf I have currently configured:
[default]
h...