<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Making Splunk as syslog server in Splunk Enterprise</title>
    <link>https://community.splunk.com/t5/Splunk-Enterprise/What-are-the-pros-and-cons-of-using-Splunk-as-the-Syslog-server/m-p/512538#M2954</link>
    <description>&lt;P&gt;Splunk is way too expensive to just use it as a syslog server. You'd rather want a Linux-based system that uses either rsyslog or syslog-ng which collects all logs for you. And the logs that you'll need then go into your Splunk environment.&lt;/P&gt;&lt;P&gt;Another contra, besides the cost, is that Splunk may and will be restarted sometimes. The server that will listen for incoming syslog data will then not be able to receive that data while Splunk restarts. A syslog server itself won't be restarted regularly.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Skalli&lt;/P&gt;</description>
    <pubDate>Wed, 05 Aug 2020 11:14:58 GMT</pubDate>
    <dc:creator>skalliger</dc:creator>
    <dc:date>2020-08-05T11:14:58Z</dc:date>
    <item>
      <title>What are the pros and cons of using Splunk as the Syslog server?</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/What-are-the-pros-and-cons-of-using-Splunk-as-the-Syslog-server/m-p/512535#M2953</link>
      <description>&lt;P&gt;Can we use Splunk as the Syslog server? if Yes then what are the Pros and cons of using Splunk as the Syslog server?&lt;/P&gt;</description>
      <pubDate>Thu, 06 Aug 2020 23:13:29 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/What-are-the-pros-and-cons-of-using-Splunk-as-the-Syslog-server/m-p/512535#M2953</guid>
      <dc:creator>BharathKM</dc:creator>
      <dc:date>2020-08-06T23:13:29Z</dc:date>
    </item>
    <item>
      <title>Re: Making Splunk as syslog server</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/What-are-the-pros-and-cons-of-using-Splunk-as-the-Syslog-server/m-p/512538#M2954</link>
      <description>&lt;P&gt;Splunk is way too expensive to just use it as a syslog server. You'd rather want a Linux-based system that uses either rsyslog or syslog-ng which collects all logs for you. And the logs that you'll need then go into your Splunk environment.&lt;/P&gt;&lt;P&gt;Another contra, besides the cost, is that Splunk may and will be restarted sometimes. The server that will listen for incoming syslog data will then not be able to receive that data while Splunk restarts. A syslog server itself won't be restarted regularly.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Skalli&lt;/P&gt;</description>
      <pubDate>Wed, 05 Aug 2020 11:14:58 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/What-are-the-pros-and-cons-of-using-Splunk-as-the-Syslog-server/m-p/512538#M2954</guid>
      <dc:creator>skalliger</dc:creator>
      <dc:date>2020-08-05T11:14:58Z</dc:date>
    </item>
  </channel>
</rss>

