<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Network traffic flow integration with Splunk Cloud in Splunk Cloud Platform</title>
    <link>https://community.splunk.com/t5/Splunk-Cloud-Platform/Network-traffic-flow-integration-with-Splunk-Cloud/m-p/496374#M1007</link>
    <description>&lt;P&gt;If your network segregation is based on zones (and by which, i mean only your DMZ can access the internet) then I would locate your HF inside the DMZ.&lt;BR /&gt;
I would probably locate the DS on the internal network.&lt;/P&gt;</description>
    <pubDate>Mon, 27 Jan 2020 16:27:48 GMT</pubDate>
    <dc:creator>nickhills</dc:creator>
    <dc:date>2020-01-27T16:27:48Z</dc:date>
    <item>
      <title>Network traffic flow integration with Splunk Cloud</title>
      <link>https://community.splunk.com/t5/Splunk-Cloud-Platform/Network-traffic-flow-integration-with-Splunk-Cloud/m-p/496371#M1004</link>
      <description>&lt;P&gt;I currently have Splunk Enterprise on prem and want to move to the Cloud. Do we have to have a separate syslog server to collect all network traffic and have forwarders to send them to Splunk cloud instance?  What other ways I can send the network traffic flow to Splunk cloud instance?&lt;/P&gt;</description>
      <pubDate>Mon, 27 Jan 2020 16:00:21 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Cloud-Platform/Network-traffic-flow-integration-with-Splunk-Cloud/m-p/496371#M1004</guid>
      <dc:creator>camieya2017</dc:creator>
      <dc:date>2020-01-27T16:00:21Z</dc:date>
    </item>
    <item>
      <title>Re: Network traffic flow integration with Splunk Cloud</title>
      <link>https://community.splunk.com/t5/Splunk-Cloud-Platform/Network-traffic-flow-integration-with-Splunk-Cloud/m-p/496372#M1005</link>
      <description>&lt;P&gt;Yes - you would want to locate a heavy forwarder/syslog reciver on your local environment to agregate logs, and send them to Splunk Cloud, or install a Universal Forwarder on each host to collect the local syslog.&lt;/P&gt;

&lt;P&gt;Commonly, you may do both, and combine with a deployment server to manage all you local UF and HF Splunk components.&lt;/P&gt;</description>
      <pubDate>Mon, 27 Jan 2020 16:13:16 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Cloud-Platform/Network-traffic-flow-integration-with-Splunk-Cloud/m-p/496372#M1005</guid>
      <dc:creator>nickhills</dc:creator>
      <dc:date>2020-01-27T16:13:16Z</dc:date>
    </item>
    <item>
      <title>Re: Network traffic flow integration with Splunk Cloud</title>
      <link>https://community.splunk.com/t5/Splunk-Cloud-Platform/Network-traffic-flow-integration-with-Splunk-Cloud/m-p/496373#M1006</link>
      <description>&lt;P&gt;Thank you for your answer. We are currently moving out of the data center and migrating to azure environment. Do you have a recommendation where we should have a syslog (deployment) server? internal network or dmz, behind firewall on separate domain?  The whole point for moving to Splunk Cloud was to avoid to have splunk enterprise on azure. Any recommendations? Thank you so much in advance. &lt;/P&gt;</description>
      <pubDate>Mon, 27 Jan 2020 16:22:48 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Cloud-Platform/Network-traffic-flow-integration-with-Splunk-Cloud/m-p/496373#M1006</guid>
      <dc:creator>camieya2017</dc:creator>
      <dc:date>2020-01-27T16:22:48Z</dc:date>
    </item>
    <item>
      <title>Re: Network traffic flow integration with Splunk Cloud</title>
      <link>https://community.splunk.com/t5/Splunk-Cloud-Platform/Network-traffic-flow-integration-with-Splunk-Cloud/m-p/496374#M1007</link>
      <description>&lt;P&gt;If your network segregation is based on zones (and by which, i mean only your DMZ can access the internet) then I would locate your HF inside the DMZ.&lt;BR /&gt;
I would probably locate the DS on the internal network.&lt;/P&gt;</description>
      <pubDate>Mon, 27 Jan 2020 16:27:48 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Cloud-Platform/Network-traffic-flow-integration-with-Splunk-Cloud/m-p/496374#M1007</guid>
      <dc:creator>nickhills</dc:creator>
      <dc:date>2020-01-27T16:27:48Z</dc:date>
    </item>
  </channel>
</rss>

