...apture mode on Ubuntu instead of RHEL/CentOS. I don't think thats the problem though.
Invalid key in stanza [streamfwd] in /opt/splunk/etc/apps/Splunk_TA_stream/local/streamfwd.conf, line 4: d...
...ead (not using SSL so this is set to port 8000 using http://).
The inputs.conf file is configured on all 4 forwarders with the following settings in the [streamfwd] and [streamfwd://streamfwd] s...
...ith no errors. I moved the streamfwd.conf file into the local directory of the instance and used the local IP address, the port for receiving that Netflow will be pointing to as well as the source b...
All,
I placed Splunk_TA_stream on a bunch of boxes and now the search head it's hitting is getting murdered performance-wise. I really only need the Splunk_TA_stream to check in every few hours a...
I am trying to use Splunk Stream with the HTTP Event Collector. I have set HEC to not use SSL. In inputs.conf on the servers with HEC enabled:
[http]
disabled=0
enableSSL=0
The HEC URLs a...
I am trying to decrypt https traffic (using RSA chipher) :
1, add the private key
./streamfwd --addsslkey test /tmp/server.key
2, add 2 lines into streamfwd.conf
sslServer.0.address...