We have cluster deployment setup. I installed Splunk App for CEF on search head and created a data model and CEF output.
Then exported the add-on and install on Splunk indexer through Cluster-Master. Require firewall and routing is fine. But i am getting below error in cefout.log
DEBUG ARGS: [u'routing=broker']
WARNING Invalid routing group 'broker'
Note:broker is my search name in cef output.
Could anyone let me know , why this invalid routing error appears? Whats its significance? How to fix this?
... View more