Setting up a new HA FMC pair, running 7.0.2. Migrated a test FTD over to the new FMC environment to check eStreamer logging capabilities. Worked for several weeks, and then the events quit populating in Splunk.
I have another FMC using eStreamer to Splunk with no issues. Currently have a TAC case open, with both troubleshooting files from each FMC uploaded to the case.
Any thoughts as to why this connection keeps dropping?