Monitoring Splunk

Forwarder and indexer communication through port 8089 ?

pgadhari
Builder

Hi All,

Whether port 8089 should be opened bi-directional or uni-directional between forwarder and indexer ? In our setup, there is a firewall between forwarder and indexers, and I need to tell the firewall team about the same. I am asking them to open it bi-directional, but they are not allowing it. They need some Splunk documentation to support this as evidence.

Please clarify the direction and also point me some Splunk document, wherein I can show them as evidence, if bi-directional port opening is required.

Thanks
Pankaj

0 Karma

pgadhari
Builder

I have seen that thread before, but it is not clearly mentioned that whether 8089 should be uni-directional or bi-directional ? Can you tell me which direction is applicable 🙂 ?

Thanks
Pankaj

renems
Communicator

How about this forum question I asked a while ago? Would that count as evidence? 🙂
https://answers.splunk.com/answers/58888/what-are-the-ports-that-i-need-to-open.html#comment-365835

0 Karma
Get Updates on the Splunk Community!

Modern way of developing distributed application using OTel

Recently, I had the opportunity to work on a complex microservice using Spring boot and Quarkus to develop a ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had 3 releases of new security content via the Enterprise Security ...

Archived Metrics Now Available for APAC and EMEA realms

We’re excited to announce the launch of Archived Metrics in Splunk Infrastructure Monitoring for our customers ...