我正在尝试启用Splunk收集的Write_http插件,问题是当我尝试从外部卷曲时
curl http://10.xx.xxx.x:8088/services/collector/raw -H "Authorization: Splunk 2c396ad4-f518-416f-83cd-e37596228792" -d {"test":"value"}
有效。但是当我在收集的插件
<Plugin write_http>
<Node "node-http-1">
URL "http://10.xx.xxx.x:8088/services/collector/raw?channel=2c396ad4-f518-416f-83cd-e37596228792"
Header "Authorization: Splunk 2c396ad4-f518-416f-83cd-e37596228792"
Format "JSON"
Metrics true
StoreRates true
我知道
[error] write_http plugin: curl_easy_perform failed with status 56: Recv failure: Connection reset by peer
是因为收集的卷曲版本吗?
只需在splunk的http数据输入中以全局设置检查端口。默认情况下必须为8080。在write_http插件中相应地更改collect.conf中的端口。
希望它对您有用!