Dashboards & Visualizations

Continuous CAT to Splunk Logs Failing to host = 161.209.202.108, user = sv_cat, port = 22

Praz_123
Path Finder

CAT to Splunk Logs Failing:
host = 161.209.202.108
user = sv_cat
port = 22

Start time: 10/24/2023 at 4:21am 

Labels (1)
Tags (3)
0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

Is there a question or are you just reporting this? If it is a question, you should provide more information about what you have tried, and what the actual errors are.

0 Karma

Praz_123
Path Finder

 
Basically, this is a question , able to see events till 4:00 am and after that not able to see.

With the below query able to check the last events :-

| tstats  count where index=cat by host, index, source, sourcetype, _time

| search host=* |sort _time

@ITWhisperer

Tags (3)
0 Karma

inventsekar
SplunkTrust
SplunkTrust

>>>Basically, this is a question , able to see events till 4:00 am and after that not able to see.

Hi @Praz_123 ... you were able to see logs/events till 4am and then not able to see, (for the host with ip  161.209.202.108... next time please avoid the ip addresses in your post, for security concerns)

maybe... there are not events/logs after 4am at all.

so, you should check the team or person who creates those events/logs(at the required host)

 

Iif you are looking for more details, Pls update us with more info, thanks. 

0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

Basically, still not a question. If it is a question, what sort of answer are you expecting?

0 Karma
Get Updates on the Splunk Community!

Built-in Service Level Objectives Management to Bridge the Gap Between Service & ...

Wednesday, May 29, 2024  |  11AM PST / 2PM ESTRegister now and join us to learn more about how you can ...

Get Your Exclusive Splunk Certified Cybersecurity Defense Engineer at Splunk .conf24 ...

We’re excited to announce a new Splunk certification exam being released at .conf24! If you’re headed to Vegas ...

Share Your Ideas & Meet the Lantern team at .Conf! Plus All of This Month’s New ...

Splunk Lantern is Splunk’s customer success center that provides advice from Splunk experts on valuable data ...