Skip to main content
Question

S2s connection issues

  • March 11, 2025
  • 2 replies
  • 31 views

Hi, we use Cribl 4.0.3 in our environment and have currently issues within a stable connection to Splunk Agents within version 9.0.2.
It seems like, that the connection is up and dropping after some minutes.
Could it be a possible error with the s2s protocol?
In Sources config we can use v4 (beta). Does it work properly? Splunk says in their release document that v3 will be deprecated soon.

2 replies

Hi Brenny, I would kindly ask that you open a support case for our engineers to troubleshoot the issue.

Working with Cribl Support | Cribl Docs

If you run into issues with Cribl Stream, please first check our Known Issues page for recommended resolutions or workarounds. For questions not addressed there, this page outlines how to engage with the Cribl Support staff to resolve problems...


  • Author
  • Participating Frequently
  • March 11, 2025

Hi, are some additional infos.

On Splunk Forwarder we only get the following ERROR messages: unexpected event ID xxx
May this help?

#####Update

It looks like we made it.