<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic heavy forwarder configuration path in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/heavy-forwarder-configuration-path/m-p/71548#M14562</link>
    <description>&lt;P&gt;Which is the path where the configuration for heavy forwarder needs to be stored. whether it is the usual path $SPLUNK_HOME/etc/system/local or is it a different path&lt;/P&gt;</description>
    <pubDate>Fri, 22 Mar 2013 14:04:27 GMT</pubDate>
    <dc:creator>sansri7680</dc:creator>
    <dc:date>2013-03-22T14:04:27Z</dc:date>
    <item>
      <title>heavy forwarder configuration path</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/heavy-forwarder-configuration-path/m-p/71548#M14562</link>
      <description>&lt;P&gt;Which is the path where the configuration for heavy forwarder needs to be stored. whether it is the usual path $SPLUNK_HOME/etc/system/local or is it a different path&lt;/P&gt;</description>
      <pubDate>Fri, 22 Mar 2013 14:04:27 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/heavy-forwarder-configuration-path/m-p/71548#M14562</guid>
      <dc:creator>sansri7680</dc:creator>
      <dc:date>2013-03-22T14:04:27Z</dc:date>
    </item>
    <item>
      <title>Re: heavy forwarder configuration path</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/heavy-forwarder-configuration-path/m-p/71549#M14563</link>
      <description>&lt;P&gt;If you put stuff (config-files) in $SPLINK_HOME/etc/system/local, that should most likely work fine. &lt;/P&gt;

&lt;P&gt;However, you need to figure out which settings go where in a distributed setup - depending on which phase occurs where. There are some settings related to the Input Phase, others that only have meaning in the Parsing Phase, etc etc. &lt;/P&gt;

&lt;P&gt;This page may prove beneficial:&lt;/P&gt;

&lt;P&gt;&lt;A href="http://wiki.splunk.com/Where_do_I_configure_my_Splunk_settings"&gt;http://wiki.splunk.com/Where_do_I_configure_my_Splunk_settings&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;/Kristian&lt;/P&gt;</description>
      <pubDate>Fri, 22 Mar 2013 14:14:20 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/heavy-forwarder-configuration-path/m-p/71549#M14563</guid>
      <dc:creator>kristian_kolb</dc:creator>
      <dc:date>2013-03-22T14:14:20Z</dc:date>
    </item>
    <item>
      <title>Re: heavy forwarder configuration path</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/heavy-forwarder-configuration-path/m-p/71550#M14564</link>
      <description>&lt;P&gt;can you give me an example configuration for receiving a light forwarder data by a heavy forwarder and forwarding it to an indexer&lt;/P&gt;</description>
      <pubDate>Mon, 25 Mar 2013 11:33:16 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/heavy-forwarder-configuration-path/m-p/71550#M14564</guid>
      <dc:creator>sansri7680</dc:creator>
      <dc:date>2013-03-25T11:33:16Z</dc:date>
    </item>
  </channel>
</rss>

