I'm very new to Splunk and trying to figure some things out on my LAN. I managed to get one of the other PC's to send data to my Splunk Enterprise via LAN monitoring, but the PC does not appear as a Forwarder. I've set up my machine to listen on the default port of 9997, and set the Forwarder to send data on the same port to my IP. I've followed the steps listed for enabling a receiver and set up forwarding and receiving and I've restarted both iterations of Splunk (Enterprise and the Forwarder) more times than I care to recount, yet I still have no Forwarder showing when I try to add data from Forwarders. Am I missing something? Do I need to use the CLI to change something rather than the GUI?
Thanks for any and all help!
James
... View more