Check that your ports are open and that splunk is listening for traffic on 9050. You can see an example described here for Splunk Storm (and Splunk Enterprise) http://docs.splunk.com/Documentation/Storm/Storm/User/Howtoforwarddatavianetcat
... View more