Monitoring Splunk

After starting Splunk universal Forwarder , i am not able to access to website <ip:8000>

vibhava
New Member

I install Splunk universal Forwarder and ran it, it started but i am not able to access the http site after entering the ip with port number on linux

Labels (1)
0 Karma

Richfez
SplunkTrust
SplunkTrust

The Universal Forwarder has no UI.  Splunk Web isn't available on it, so there's no http site to go to.

https://docs.splunk.com/Documentation/Splunk/9.2.0/Forwarding/Typesofforwarders

To get a UI like that *on a forwarder* you'll need to install a Heavy Forwarder which is actually just the full Splunk server installation - what makes it a HF instead of just "Regular Splunk" is how it's configured later to both receive and 'forward' data in to another Splunk instance.

Or just an install of the full Splunk installation.

0 Karma

isoutamo
SplunkTrust
SplunkTrust

Hi

it’s like @Richfez said. UF hasn’t any UI component. Earlier it has management port enabled, but currently even it is disabled by default.

Why you are thinking that you need a GUI on UF? Usually it has configured by DS or other tool wit apps.

r. Ismo

0 Karma
Get Updates on the Splunk Community!

Archived Metrics Now Available for APAC and EMEA realms

We’re excited to announce the launch of Archived Metrics in Splunk Infrastructure Monitoring for our customers ...

Detecting Remote Code Executions With the Splunk Threat Research Team

WATCH NOWRemote code execution (RCE) vulnerabilities pose a significant risk to organizations. If exploited, ...

Enter the Dashboard Challenge and Watch the .conf24 Global Broadcast!

The Splunk Community Dashboard Challenge is still happening, and it's not too late to enter for the week of ...