When the configuration for the Splunk Syslog Integration is saved it turns green, shows as Connected and reports a success message.
Navigate to another page in the web UI, then back to the Syslog Configuration page, and it shows as Red Disconnected.
Selecting the entry from the "Syslog Configurations" or "IP Domain Assignments" column then shows an empty config.
Selecting the entry from the opposite column then reveals the true state, a Green Connected state.
The Splunk integration status on the Syslog Configuration page intermittently shows a red "Disconnected" state.
The status may flip between green (Connected) and red (Disconnected) upon page refreshes.
Syslog reports continue to display data from Splunk despite the red status indicator.
DX NetOps Portal integrated with a Splunk server
This behavior is due to a defect in the UI health-check polling mechanism for the Splunk integration (Defect DE203294).
The UI may show an incorrect "Disconnected" visual state even when the underlying API communication is functional.
This issue is Targeted to be fixed in 25.4.10 as of today, June 25th 2026. Subscribe to this article (Reference: ) to be updated on the fix status.
Monitor the Resolved Issues documentation for 25.4.10 entries when it goes GA. Confirm DE203294 shows as resolved.
To speak with a customer representative or a Support Engineer, see . Scroll to the bottom of the page and click on your respective region.