Displays the following health states of the Layer 7 Metadata Event Exporter:
Connected—The Layer 7 Metadata Event Exporter is connected to the Splunk Enterprise server and is sending the network event logs.
Not Connected—The Layer 7 Metadata Event Exporter is not connected to the Splunk Enterprise server.
Connected (Not Authenticated)—The Layer 7 Metadata Event Exporter is connected to the Splunk Enterprise server, but authentication failed because of an invalid authorization token.
Not Applicable For UDP Protocol—If the Layer 7 Metadata Event Exporter is configured with the UDP transport protocol, you cannot view the health states.
Note
You cannot integrate a SmartVision Edition sensor with a Splunk Enterprise server. SmartVision Edition sensors do not support the Layer 7 Metadata Event Exporter feature.
Splunk integration is not supported on the NX x3xx appliances and the NX 10000 appliance.
Syntax
show l7metadata-export health
Parameters
None
Example
The following example shows that the L7 Exporter has been authenticated with Splunk Enterprise and is in the process of connecting:
hostname # show l7metadata-export health Connected
User role
Admin or Operator
Command mode
Enable
Supported appliances
This command is supported on the following appliance running the specified release or later:
Network Security: Release 8.2