Splunk Enterprise

Does Splunk send nightly info to corp?

justindevelops
Explorer

Hello - As the subject states, does Splunk send your daily usage etc to corp on a nightly schedule?

The reason I ask is that I am new to Splunk, (learning it for enterprise clients) and ran into something odd.

I set up Splunk last week (using Vagrant locally) and connected my router to it for sys logs. Digging through all the logs found that something appears on my network at the same time every early AM and connects to a few IP's (AWS mostly but one had a few references for Splunk) for a few minutes then goes away.

Now this could have been on my network without my knowledge but the IP's at AWS and one that came up for Splunk have made me want to dig into this router a little further first.

Thank you in advance!
- Justin

0 Karma
1 Solution

martin_mueller
SplunkTrust
SplunkTrust

If that's happening around 3:05am, you've probably opted in to sharing usage, performance, or license data with Splunk: http://docs.splunk.com/Documentation/Splunk/6.5.1/Admin/Shareperformancedata

View solution in original post

martin_mueller
SplunkTrust
SplunkTrust

If that's happening around 3:05am, you've probably opted in to sharing usage, performance, or license data with Splunk: http://docs.splunk.com/Documentation/Splunk/6.5.1/Admin/Shareperformancedata

martin_mueller
SplunkTrust
SplunkTrust

There's also update checks, should be apps.splunk.com - AWS IPs behind that.

0 Karma

justindevelops
Explorer

Good to know, thank you for that info.

I actually found out what my "rouge" issue was. It was my kindle syncing, that I thought was off sitting in the closet. 🙂

If nothing else at least now I know about Splunk updates and logging/usage stuff now for clients. 🙂

0 Karma

justindevelops
Explorer

OK it is not Splunk then. I checked that link and my settings and that is turned off. Thank you for the response!

0 Karma
Get Updates on the Splunk Community!

Introducing Splunk Enterprise 9.2

WATCH HERE! Watch this Tech Talk to learn about the latest features and enhancements shipped in the new Splunk ...

Adoption of RUM and APM at Splunk

    Unleash the power of Splunk Observability   Watch Now In this can't miss Tech Talk! The Splunk Growth ...

Routing logs with Splunk OTel Collector for Kubernetes

The Splunk Distribution of the OpenTelemetry (OTel) Collector is a product that provides a way to ingest ...