<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content

Error "failure: Unclassified Error" when Creating Splunk Cloud Log Stream

Administration
Okta Identity Engine

Overview

When attempting to create a Splunk Cloud Log Stream, the following error message may be encountered: 

failure: Unclassified Error

 

Applies To

  • Log Streaming
  • Splunk

Cause

The Indexer Acknowledgement setting for the HTTP Event Collector (HEC) token is set to true.

Solution

Change the Indexer Acknowledgement setting for the HTTP Event Collector (HEC) token to false by following the steps below:

  1. Go to SettingsDataData Inputs.
  2. Click HTTP Event Collector.
  3. Find the correct HTTP Event Collector.
  4. Click Edit.
  5. Uncheck Enable indexer acknowledgment.

Enable indexer acknowledgment

  1. Click Save. The following success message should be seen:
    "{
        "text": "Success",
        "code": 0
    }
    " 


Related References

Loading
Error "failure: Unclassified Error" when Creating Splunk Cloud Log Stream | Okta Support