stopped the splunk service. added a new line (didnt remove any lines) and started splunk service.
Now get an error: received event for unconfigured/disabled/deleted index='sonicwall' with source='source::dell_ipfix://Dell_IPFIX' host='host::localhost:2055' sourcetype='sourcetype::dell_ipfix' (1 missing total)
xxx.xxx.xxx.xxx, "My SonicWall"
18.104.22.168, "Sample Host"
"localhost:2055", "IPFix Convert"
... View more