Troubleshoot the Splunk Add-on for RSA SecurID
General troubleshooting
For helpful troubleshooting tips that you can apply to all add-ons, see Troubleshoot add-ons in the Splunk Add-ons manual. For additional resources, see "Support and resource links for add-ons" in the Splunk Add-ons manual.
Data not coming in
- Verify that the Authentication Manager can reach the Splunk platform instance that is expecting the data from UDP.
- If you are monitoring syslog directly, ensure the UDP input port does not have a conflict.
- Verify that your source type is set to
rsa:securid:syslog
.
Configure inputs for the Splunk Add-on for RSA SecurID | Lookups for the Splunk Add-on for RSA SecurID |
This documentation applies to the following versions of Splunk® Supported Add-ons: released
Feedback submitted, thanks!