Security

Why am I unable to delete TCP port 1514 in Splunk Web?

rishabhey2016
Explorer

I am not able to delete port 1514. After I tried deleting it, it's still there. Please help on this. Please refer the screen shot as well.
alt text

jliaw
Explorer

Hi. May I know where do you view all your ports?
I don't know where to search them in my Splunk.

0 Karma

jeffland
SplunkTrust
SplunkTrust

My guess is the input was defined (by mistake) in an inputs.conf in a default folder. Run the following command from your CLI:

splunk cmd btool inputs list --debug | grep tcp://1514

This should show you where exactly the input is configured. Go there to delete it. If it is in the default folder of an app (or worse, system), this was the reason you couldn't remove it via the UI.

Richfez
SplunkTrust
SplunkTrust

The equivalent windows command (if you are Windows instead of *nix) would be

splunk cmd btool inputs list --debug | findstr tcp://1514

Just in case you needed it. 🙂

0 Karma

damode
Motivator

Thanks! this was very useful

0 Karma

Richfez
SplunkTrust
SplunkTrust

Have you tried restarting Splunk afterwards to see what happens with this input then?

0 Karma
Get Updates on the Splunk Community!

What's new in Splunk Cloud Platform 9.1.2312?

Hi Splunky people! We are excited to share the newest updates in Splunk Cloud Platform 9.1.2312! Analysts can ...

What’s New in Splunk Security Essentials 3.8.0?

Splunk Security Essentials (SSE) is an app that can amplify the power of your existing Splunk Cloud Platform, ...

Let’s Get You Certified – Vegas-Style at .conf24

Are you ready to level up your Splunk game? Then, let’s get you certified live at .conf24 – our annual user ...