Our firewall logs shows twice on splunk. I configured rsyslog server with tcp. When I configure the log server with udp . Everythink is okey. But tcp is problem. When I configured the log server 10514 tcp every duplicate.