Deployment Architecture

Data not been Indexed

ravid
New Member

Hi Team,

We can see that data has been picked up by heavy forwarder and its communicating fine with the indexer - Checked in splunkd log of heavy forwarder. But we are not able to find that data in indexer - How can we check whether that data has been forwarded by heavy forwarder to the indexer - Any logs or command to run to check the functionality.

Thanks | Ravi

Tags (1)
0 Karma

kristian_kolb
Ultra Champion
0 Karma
Get Updates on the Splunk Community!

Index This | I am a number, but when you add ‘G’ to me, I go away. What number am I?

March 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...

What’s New in Splunk App for PCI Compliance 5.3.1?

The Splunk App for PCI Compliance allows customers to extend the power of their existing Splunk solution with ...

Extending Observability Content to Splunk Cloud

Register to join us !   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to ...