<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How to add Data Sources from different devices to Splunk? in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/How-to-add-Data-Sources-from-different-devices-to-Splunk/m-p/249498#M48014</link>
    <description>&lt;P&gt;Yep, what you are asking for could fill books.  Before you start doing anything with splunk, find out from the tech guys WHERE those firewalls are putting their log data.  It will be a directory somewhere on your network.  &lt;/P&gt;

&lt;P&gt;Then your organization has two basic choices - do they forward you a copy of that log for you to ingest, or do they let you ingest it out of that directory.  Most likely, they'll want you to keep your splunky paws off their REAL log data directory, so they'll want to forward it to your indexer.&lt;/P&gt;

&lt;P&gt;Once you know the answer to those questions, then you can get started.  Review these manuals, google around, try some stuff, and then if you can't figure something out, then post a VERY SPECIFIC &lt;STRONG&gt;NEW&lt;/STRONG&gt; QUESTION on the splunk answer board.&lt;/P&gt;

&lt;P&gt;start here - &lt;BR /&gt;
&lt;A href="http://docs.splunk.com/Documentation/Splunk/6.5.1/Data/Howdoyouwanttoadddata"&gt;http://docs.splunk.com/Documentation/Splunk/6.5.1/Data/Howdoyouwanttoadddata&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;This may also help.&lt;BR /&gt;
&lt;A href="http://docs.splunk.com/Documentation/Splunk/6.5.1/Data/Configureyourinputs"&gt;http://docs.splunk.com/Documentation/Splunk/6.5.1/Data/Configureyourinputs&lt;/A&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 24 Jan 2017 00:18:50 GMT</pubDate>
    <dc:creator>DalJeanis</dc:creator>
    <dc:date>2017-01-24T00:18:50Z</dc:date>
    <item>
      <title>How to add Data Sources from different devices to Splunk?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/How-to-add-Data-Sources-from-different-devices-to-Splunk/m-p/249497#M48013</link>
      <description>&lt;P&gt;How to Add Data Sources from the following devices:&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;No| Data Type                     |  No’s of devices      |   Log sources 
01  Windows Servers           | 45/100 virtual      |      syslog   
02  Linux Servers                    
03  Palo Alto Firewall                   
04  Stonesoft  Firewall             
07  Bluecoat                                    
08  WAF                                     
09  Brocade Switches                                 
10  Routers                                   
11  Load Balancer-F5                                                    
12  MS Exchange                   
&lt;/CODE&gt;&lt;/PRE&gt;

&lt;HR /&gt;

&lt;P&gt;Please just help me on the Firewall Part how to add the Firewall, Switches, Routers, LB, MS Exchange to Splunk so Splunk start Receiving the Data for Firewall &amp;amp; other Devices.  I Know its a huge information, I Request someone to please help me on the following. &lt;/P&gt;

&lt;P&gt;Regards,&lt;/P&gt;</description>
      <pubDate>Mon, 23 Jan 2017 10:22:22 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/How-to-add-Data-Sources-from-different-devices-to-Splunk/m-p/249497#M48013</guid>
      <dc:creator>fazilhussain</dc:creator>
      <dc:date>2017-01-23T10:22:22Z</dc:date>
    </item>
    <item>
      <title>Re: How to add Data Sources from different devices to Splunk?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/How-to-add-Data-Sources-from-different-devices-to-Splunk/m-p/249498#M48014</link>
      <description>&lt;P&gt;Yep, what you are asking for could fill books.  Before you start doing anything with splunk, find out from the tech guys WHERE those firewalls are putting their log data.  It will be a directory somewhere on your network.  &lt;/P&gt;

&lt;P&gt;Then your organization has two basic choices - do they forward you a copy of that log for you to ingest, or do they let you ingest it out of that directory.  Most likely, they'll want you to keep your splunky paws off their REAL log data directory, so they'll want to forward it to your indexer.&lt;/P&gt;

&lt;P&gt;Once you know the answer to those questions, then you can get started.  Review these manuals, google around, try some stuff, and then if you can't figure something out, then post a VERY SPECIFIC &lt;STRONG&gt;NEW&lt;/STRONG&gt; QUESTION on the splunk answer board.&lt;/P&gt;

&lt;P&gt;start here - &lt;BR /&gt;
&lt;A href="http://docs.splunk.com/Documentation/Splunk/6.5.1/Data/Howdoyouwanttoadddata"&gt;http://docs.splunk.com/Documentation/Splunk/6.5.1/Data/Howdoyouwanttoadddata&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;This may also help.&lt;BR /&gt;
&lt;A href="http://docs.splunk.com/Documentation/Splunk/6.5.1/Data/Configureyourinputs"&gt;http://docs.splunk.com/Documentation/Splunk/6.5.1/Data/Configureyourinputs&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 24 Jan 2017 00:18:50 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/How-to-add-Data-Sources-from-different-devices-to-Splunk/m-p/249498#M48014</guid>
      <dc:creator>DalJeanis</dc:creator>
      <dc:date>2017-01-24T00:18:50Z</dc:date>
    </item>
    <item>
      <title>Re: How to add Data Sources from different devices to Splunk?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/How-to-add-Data-Sources-from-different-devices-to-Splunk/m-p/249499#M48015</link>
      <description>&lt;P&gt;Hi fazilhussian, &lt;/P&gt;

&lt;P&gt;I think you can read the Getting Data In manual to get started with collecting data into Splunk: &lt;BR /&gt;
&lt;A href="http://docs.splunk.com/Documentation/Splunk/6.5.1/Data/Getstartedwithgettingdatain"&gt;http://docs.splunk.com/Documentation/Splunk/6.5.1/Data/Getstartedwithgettingdatain&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;Also, from your list of data types you want to ingest, I see there are some add-ons for the corresponding products that you can download from &lt;A href="https://splunkbase.splunk.com/"&gt;https://splunkbase.splunk.com/&lt;/A&gt; and install in your environment to help you collect data: &lt;/P&gt;

&lt;UL&gt;
&lt;LI&gt;Splunk Add-on for Blue Coat ProxySG: &lt;A href="http://docs.splunk.com/Documentation/AddOns/released/BlueCoatProxySG/About"&gt;http://docs.splunk.com/Documentation/AddOns/released/BlueCoatProxySG/About&lt;/A&gt;&lt;/LI&gt;
&lt;LI&gt;Splunk Add-on for Unix and Linux: &lt;A href="http://docs.splunk.com/Documentation/UnixAddOn/5.2.3/User/AbouttheSplunkAdd-onforUnixandLinux"&gt;http://docs.splunk.com/Documentation/UnixAddOn/5.2.3/User/AbouttheSplunkAdd-onforUnixandLinux&lt;/A&gt;&lt;/LI&gt;
&lt;LI&gt;Splunk Add-on for Windows: &lt;A href="http://docs.splunk.com/Documentation/WindowsAddOn/4.8.3/User/AbouttheSplunkAdd-onforWindows"&gt;http://docs.splunk.com/Documentation/WindowsAddOn/4.8.3/User/AbouttheSplunkAdd-onforWindows&lt;/A&gt;&lt;/LI&gt;
&lt;LI&gt;Splunk App for Microsoft Exchange: &lt;A href="http://docs.splunk.com/Documentation/MSExchange"&gt;http://docs.splunk.com/Documentation/MSExchange&lt;/A&gt;&lt;/LI&gt;
&lt;LI&gt;Splunk Add-on for Linux: docs.splunk.com/Documentation/AddOns/released/Linux/About
Hope this helps. Thanks! 
Hunter&lt;/LI&gt;
&lt;/UL&gt;</description>
      <pubDate>Tue, 24 Jan 2017 03:05:11 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/How-to-add-Data-Sources-from-different-devices-to-Splunk/m-p/249499#M48015</guid>
      <dc:creator>hunters_splunk</dc:creator>
      <dc:date>2017-01-24T03:05:11Z</dc:date>
    </item>
    <item>
      <title>Re: How to add Data Sources from different devices to Splunk?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/How-to-add-Data-Sources-from-different-devices-to-Splunk/m-p/249500#M48016</link>
      <description>&lt;P&gt;Thanks  Hunters &amp;amp; Dal. &lt;BR /&gt;
Will try. &lt;/P&gt;</description>
      <pubDate>Wed, 25 Jan 2017 09:30:26 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/How-to-add-Data-Sources-from-different-devices-to-Splunk/m-p/249500#M48016</guid>
      <dc:creator>fazilhussain</dc:creator>
      <dc:date>2017-01-25T09:30:26Z</dc:date>
    </item>
  </channel>
</rss>

