<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Monitoring Computers connect to a network in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/Monitoring-Computers-connect-to-a-network/m-p/192729#M38451</link>
    <description>&lt;P&gt;I most likely am going to use forwarders then, but how can Splunk be configured to grab data from other computers? It sounds to be more difficult to set up.&lt;/P&gt;</description>
    <pubDate>Mon, 09 Jun 2014 18:44:26 GMT</pubDate>
    <dc:creator>thomashigginson</dc:creator>
    <dc:date>2014-06-09T18:44:26Z</dc:date>
    <item>
      <title>Monitoring Computers connect to a network</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Monitoring-Computers-connect-to-a-network/m-p/192723#M38445</link>
      <description>&lt;P&gt;How can I add a data input(s) for remote computers connected to a Network using Splunk? Splunk has access to the network and I want to collect data usage and WinLog Events.&lt;/P&gt;</description>
      <pubDate>Mon, 09 Jun 2014 14:50:04 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Monitoring-Computers-connect-to-a-network/m-p/192723#M38445</guid>
      <dc:creator>thomashigginson</dc:creator>
      <dc:date>2014-06-09T14:50:04Z</dc:date>
    </item>
    <item>
      <title>Re: Monitoring Computers connect to a network</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Monitoring-Computers-connect-to-a-network/m-p/192724#M38446</link>
      <description>&lt;P&gt;Install a Splunk Universal Forwarder on each remote computer.  Configure the forwarder to send the desired information to your indexer(s).&lt;/P&gt;</description>
      <pubDate>Mon, 09 Jun 2014 17:06:45 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Monitoring-Computers-connect-to-a-network/m-p/192724#M38446</guid>
      <dc:creator>richgalloway</dc:creator>
      <dc:date>2014-06-09T17:06:45Z</dc:date>
    </item>
    <item>
      <title>Re: Monitoring Computers connect to a network</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Monitoring-Computers-connect-to-a-network/m-p/192725#M38447</link>
      <description>&lt;P&gt;Each forwarder, then, needs to be configured to handle data on the local system and only send information I specify to the main computer, correct?&lt;/P&gt;</description>
      <pubDate>Mon, 09 Jun 2014 17:16:01 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Monitoring-Computers-connect-to-a-network/m-p/192725#M38447</guid>
      <dc:creator>thomashigginson</dc:creator>
      <dc:date>2014-06-09T17:16:01Z</dc:date>
    </item>
    <item>
      <title>Re: Monitoring Computers connect to a network</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Monitoring-Computers-connect-to-a-network/m-p/192726#M38448</link>
      <description>&lt;P&gt;Correct.  Fortunately, they'll all be configured the same so all you have to do is set up one and copy the config to the others.&lt;/P&gt;</description>
      <pubDate>Mon, 09 Jun 2014 17:24:28 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Monitoring-Computers-connect-to-a-network/m-p/192726#M38448</guid>
      <dc:creator>richgalloway</dc:creator>
      <dc:date>2014-06-09T17:24:28Z</dc:date>
    </item>
    <item>
      <title>Re: Monitoring Computers connect to a network</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Monitoring-Computers-connect-to-a-network/m-p/192727#M38449</link>
      <description>&lt;P&gt;If the main computer with Splunk has access to the Users via the Network, and I'm looking for specific data, can I just use the Add Data and fill out the information to, say, record if a User incorrectly logs in 5 times and send an email alert? Or do I still have to set up the forwarder?&lt;/P&gt;</description>
      <pubDate>Mon, 09 Jun 2014 17:33:52 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Monitoring-Computers-connect-to-a-network/m-p/192727#M38449</guid>
      <dc:creator>thomashigginson</dc:creator>
      <dc:date>2014-06-09T17:33:52Z</dc:date>
    </item>
    <item>
      <title>Re: Monitoring Computers connect to a network</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Monitoring-Computers-connect-to-a-network/m-p/192728#M38450</link>
      <description>&lt;P&gt;Splunk can only search for and alert on data in its indexes.  While it's possible for Splunk to grab data from other computers, the more common approach is for the other computers to send data to Splunk.  If the data you need is already indexed then you don't need a forwarder.&lt;/P&gt;</description>
      <pubDate>Mon, 09 Jun 2014 17:45:22 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Monitoring-Computers-connect-to-a-network/m-p/192728#M38450</guid>
      <dc:creator>richgalloway</dc:creator>
      <dc:date>2014-06-09T17:45:22Z</dc:date>
    </item>
    <item>
      <title>Re: Monitoring Computers connect to a network</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Monitoring-Computers-connect-to-a-network/m-p/192729#M38451</link>
      <description>&lt;P&gt;I most likely am going to use forwarders then, but how can Splunk be configured to grab data from other computers? It sounds to be more difficult to set up.&lt;/P&gt;</description>
      <pubDate>Mon, 09 Jun 2014 18:44:26 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Monitoring-Computers-connect-to-a-network/m-p/192729#M38451</guid>
      <dc:creator>thomashigginson</dc:creator>
      <dc:date>2014-06-09T18:44:26Z</dc:date>
    </item>
    <item>
      <title>Re: Monitoring Computers connect to a network</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Monitoring-Computers-connect-to-a-network/m-p/192730#M38452</link>
      <description>&lt;P&gt;How Splunk reaches out to other computers depends on the computer and how the data is stored.  Splunk DB Connect, for example, can extract data from an SQL database.  Scripted inputs can be created where the script launches a program that queries other computers for data and indexes it in Splunk.  Using a forwarder is usually the easiest way.&lt;/P&gt;</description>
      <pubDate>Mon, 09 Jun 2014 18:49:45 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Monitoring-Computers-connect-to-a-network/m-p/192730#M38452</guid>
      <dc:creator>richgalloway</dc:creator>
      <dc:date>2014-06-09T18:49:45Z</dc:date>
    </item>
    <item>
      <title>Re: Monitoring Computers connect to a network</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Monitoring-Computers-connect-to-a-network/m-p/192731#M38453</link>
      <description>&lt;P&gt;I agree that using a forwarder is usually the best and easiest way. A good documentation read can be found here:&lt;BR /&gt;
&lt;A href="http://docs.splunk.com/Documentation/Splunk/latest/Data/WhatSplunkcanmonitor"&gt;http://docs.splunk.com/Documentation/Splunk/latest/Data/WhatSplunkcanmonitor&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 09 Jun 2014 18:55:54 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Monitoring-Computers-connect-to-a-network/m-p/192731#M38453</guid>
      <dc:creator>Jeff_Lightly_Sp</dc:creator>
      <dc:date>2014-06-09T18:55:54Z</dc:date>
    </item>
    <item>
      <title>Re: Monitoring Computers connect to a network</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Monitoring-Computers-connect-to-a-network/m-p/192732#M38454</link>
      <description>&lt;P&gt;Thanks for the doc, but unfortunately, my Splunk's CLI keeps exiting as soon as I open it, so I can't add the forwarder as an input.&lt;/P&gt;</description>
      <pubDate>Mon, 09 Jun 2014 23:30:24 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Monitoring-Computers-connect-to-a-network/m-p/192732#M38454</guid>
      <dc:creator>thomashigginson</dc:creator>
      <dc:date>2014-06-09T23:30:24Z</dc:date>
    </item>
  </channel>
</rss>

