Getting Data In

How do I know open UDP connections on my indexer?

varad_joshi
Communicator

We have several hosts sending data to our indexer on UDP port. Is there a way to list down all the ports on which Splunk is listening?
netstat -l shows UDP ports but few of them are missing in the output.

I can also check in GUI but its disabled on my indexer.

Tags (2)
0 Karma
1 Solution

renjith_nair
Legend

Probably ./splunk list udp

http://docs.splunk.com/Documentation/Splunk/6.4.0/Data/Monitornetworkports#Add_a_network_input_using...

---
What goes around comes around. If it helps, hit it with Karma 🙂

View solution in original post

renjith_nair
Legend

Probably ./splunk list udp

http://docs.splunk.com/Documentation/Splunk/6.4.0/Data/Monitornetworkports#Add_a_network_input_using...

---
What goes around comes around. If it helps, hit it with Karma 🙂

varad_joshi
Communicator

Thank you so much Renjith.

0 Karma

renjith_nair
Legend

you are welcome! Corrected the link

---
What goes around comes around. If it helps, hit it with Karma 🙂
0 Karma
Get Updates on the Splunk Community!

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...

Detecting Remote Code Executions With the Splunk Threat Research Team

REGISTER NOWRemote code execution (RCE) vulnerabilities pose a significant risk to organizations. If ...