We have am Splunk server in which one is configured the http event collector. We also created a new index for that and collector is pointed to it.
We are sending data thru http POST to splunk with url and token in JSON format, we got for each request a 200 OK response.
The issue is when we try to find the log entries in splunk console we are not able to find them, we noticed that the indexes (not only the index created for http collector) do not reflect any event in the console. always are in 0, it seems like the indexes are not working.
We reviewed the configurations again and again, we did not see any wrong, we install splunk trial version in a dev box just to test, and there with same configuration is working properly.
Someone knows what we need to check in the server or what we need to do to solve this issue?
... View more