Troubleshoot the Splunk Add-on for Juniper
General troubleshooting
For troubleshooting tips that apply to all add-ons, see Troubleshoot add-ons in Splunk Add-ons. For additional resources, see Support and resource links for add-ons in Splunk Add-ons.
Data ingestion problems
Verify that you have configured the input correctly by checking the following:
- You configured the correct IP address of the Splunk platform node responsible for data collection in your Juniper configuration file.
- The port configured in your Juniper configuration file matches the port you configured in your syslog input configuration.
- The port that you are using for this input does not conflict with any other inputs.
- If your Splunk platform software is not parsing events or extracting fields, check that your output is in syslog format. While Juniper devices can produce syslog and key-value output, the Splunk Add-on for Juniper only supports syslog. See Configure your Juniper device to send data to the Splunk Add-on for Juniper.
- Your syslog input is configured to set the source type to
juniper
. - You are searching the correct index. By default, this add-on uses the
main
index.
Configure inputs | Source types for the Splunk Add-on for Juniper |
This documentation applies to the following versions of Splunk® Supported Add-ons: released, released
Feedback submitted, thanks!