Connect: Splunk Enterprise (Destination)


CONNECT TO DESTINATION (Splunk HEC)

  1. Host: Splunk Enterprise (Destination) Gateway or LB VIP Host Name

  2. Port: Splunk Enterprise (Destination) Gateway or LB VIP port

      1. Typically: 8099
  3. Uses HTTPS: True if Splunk HEC is enabled with HTTPS Certificates

  4. Allow Unsigned Certificate

      1. If using HTTPS and the certificate is not signed by a Certificate Authority
  5. Max Connections

  6.  Splunk HTTP Event Token 
    1. See Splunk Docs for how to generate (link)

Use arrow to access Proxy Settings

  1. Uses Proxy : Select if you need to configure a proxy server
  2. Proxy Host: Hostname of the proxy server
  3. Proxy Port: Port number configured on proxy server for this connection
  4. Select "Validate And Create"
    1. If there's no error, the connection was successful
    2. If error, click here to troubleshoot: Linux or Windows

Click here to return to Step-by-Step Configuration Guide

Screen Shot 2021-05-03 at 4.36.08 PM.png

 

Tip: For faster searching, add an asterisk to the end of your partial query. Example: cert*