Swicthing to a different port as jcoates suggests, worked for me.
I was having a similar issue. Syslog sending to Splunk was setup and working in Splunk. Data was being indexed and everything was working fine. Later, for reasons not related to Splunk, syslog sending was turned off, on the devices. After turning syslog sending back on, no data was being indexed. Switching to a different port for syslog made it work again.
P.S. I forgot to say THANK YOU!
... View more