All Apps and Add-ons

Error when ingesting Azure Monitor Diagnostic Log: no connection on hub docs:05

njytrde
Explorer

Hello,

I am trying to ingest Azure Activity Logs and Azure Diagnostic logs into our Splunk cloud environment. Per another question on Azure Activity logs, I was able to find out that I needed to have port 5671 for the Activity logs.

I had that done through my network team and am now getting the Activity logs, but NOT the Diagnostic logs.

This is the error I get:

06-15-2019 02:19:57.727 -0400 ERROR ExecProcessor - message from "/opt/splunk/etc/apps/TA-Azure_Monitor/bin/azure_diagnostic_logs.sh" Modular input azure_diagnostic_logs://New Azure Monitor Diagnostic Log No connection on hub: docs05. 

Is there a network route to the endpoint?

Also, this is through the Azure Monitor add-on, configured in Data Inputs. Please advise on what other port that I need open.

Thanks!

0 Karma

Priyankakumari1
Explorer

Hi, I am getting same, please let me know how you resolved this??

0 Karma
Get Updates on the Splunk Community!

Webinar Recap | Revolutionizing IT Operations: The Transformative Power of AI and ML ...

The Transformative Power of AI and ML in Enhancing Observability   In the realm of IT operations, the ...

.conf24 | Registration Open!

Hello, hello! I come bearing good news: Registration for .conf24 is now open!   conf is Splunk’s rad annual ...

ICYMI - Check out the latest releases of Splunk Edge Processor

Splunk is pleased to announce the latest enhancements to Splunk Edge Processor.  HEC Receiver authorization ...