<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Splunk Heavy Forwarder in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-Heavy-Forwarder/m-p/33948#M6109</link>
    <description>&lt;P&gt;So, in this case there is no advantages in using Splunk+SplunkUniversalForwarder instead of Splunk with configuring forwarding, right?&lt;/P&gt;</description>
    <pubDate>Fri, 24 Jun 2011 12:40:39 GMT</pubDate>
    <dc:creator>Vladimir</dc:creator>
    <dc:date>2011-06-24T12:40:39Z</dc:date>
    <item>
      <title>Splunk Heavy Forwarder</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-Heavy-Forwarder/m-p/33946#M6107</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;

&lt;P&gt;Will Splunk support heavy forwarder in future or it's going to be decommitted?&lt;BR /&gt;
I'm asking because there are only links to Splunk and SplunkUniversalForwarder in download section.&lt;/P&gt;

&lt;P&gt;Thanks,&lt;BR /&gt;
Vladimir&lt;/P&gt;</description>
      <pubDate>Fri, 24 Jun 2011 11:08:30 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-Heavy-Forwarder/m-p/33946#M6107</guid>
      <dc:creator>Vladimir</dc:creator>
      <dc:date>2011-06-24T11:08:30Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Heavy Forwarder</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-Heavy-Forwarder/m-p/33947#M6108</link>
      <description>&lt;P&gt;Vladimir,&lt;/P&gt;

&lt;P&gt;The heavy forwarder is just the full install of Splunk. There is no separate download for it.&lt;/P&gt;</description>
      <pubDate>Fri, 24 Jun 2011 12:35:55 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-Heavy-Forwarder/m-p/33947#M6108</guid>
      <dc:creator>sseekamp</dc:creator>
      <dc:date>2011-06-24T12:35:55Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Heavy Forwarder</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-Heavy-Forwarder/m-p/33948#M6109</link>
      <description>&lt;P&gt;So, in this case there is no advantages in using Splunk+SplunkUniversalForwarder instead of Splunk with configuring forwarding, right?&lt;/P&gt;</description>
      <pubDate>Fri, 24 Jun 2011 12:40:39 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-Heavy-Forwarder/m-p/33948#M6109</guid>
      <dc:creator>Vladimir</dc:creator>
      <dc:date>2011-06-24T12:40:39Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Heavy Forwarder</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-Heavy-Forwarder/m-p/33949#M6110</link>
      <description>&lt;P&gt;Splunk UF is way lighter and the only job it is (almost!) doing is forwarding the collected data the Splunk instance. There is no processing here. That's why it is less resource demanding.&lt;/P&gt;

&lt;P&gt;Moreover, on the security point of view, the UF doesn't have a web UI and therefore you cannot unable it. This can be important in some cases.&lt;/P&gt;

&lt;P&gt;Hope it helps.&lt;/P&gt;

&lt;P&gt;Regards,&lt;BR /&gt;
OL&lt;/P&gt;</description>
      <pubDate>Fri, 24 Jun 2011 13:24:07 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-Heavy-Forwarder/m-p/33949#M6110</guid>
      <dc:creator>OL</dc:creator>
      <dc:date>2011-06-24T13:24:07Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Heavy Forwarder</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-Heavy-Forwarder/m-p/33950#M6111</link>
      <description>&lt;P&gt;Thanks very much to all!&lt;/P&gt;</description>
      <pubDate>Fri, 24 Jun 2011 14:31:23 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-Heavy-Forwarder/m-p/33950#M6111</guid>
      <dc:creator>Vladimir</dc:creator>
      <dc:date>2011-06-24T14:31:23Z</dc:date>
    </item>
  </channel>
</rss>

