data is coming in only for source types sc4s: events and sc4s: fallback. There are multiple compatible devices like (cisco ASA) set up to send data via UDP 514 at the server and nothing is being sent to Splunk. Does anyone have any ideas on how to troubleshoot this? (podman with systemd)
There are 2 network interfaces
try to set sysctl net.ipv4.all.rp_filter=0
https://knowledge.broadcom.com/external/article/168060/packets-silently-dropped-due-to-rpfilter.html