Hi PickleRick. Thank you for replying on the post. Our devices are sending syslogs to Splunk server over the network (there has not been, network issues). Secondly, we our supplier noticed, that they was not recieving logs from one specefic host. And after some hours (approx 5), our Supplier was recieving logs from the specific host. While the supplier was not recieving logs from this host, they recieved a lot of logs from other hosts on our network. It happend around 04.47 (am) local time, on that time, there is not load on the network Our supplier is maintaining indexes, and system work. About the ingestion process stops, could that process stop for one host (one out of many), while the other hosts are not impacted ? Brgds DD
... View more