I have Splunk setup and it establishes connection with syslog and splunk universal forwarder from a remote server: tks_tman_7-1673703578978.png I have syslog-ng setup as follows: tks_tman_9-1673703608134.png tks_tman_11-1673703648538.png You can see the connections established : tks_tman_12-1673703678360.png This is the inputs.conf for the splunk universal forwarder: tks_tman_13-1673703704841.png But still no data is being received by splunk: tks_tman_14-1673703729335.png I was able to use some powershell script to verify that the logs were being sent and delivered to the server with splunk. The issue is with splunk itself. tks_tman_0-1673746273537.png Am I missing something? And how would I go about troubleshooting the issue and fixing it?
... View more