<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Splunk on windows getting syslog from ESXi in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-on-windows-getting-syslog-from-ESXi/m-p/43775#M8181</link>
    <description>&lt;P&gt;VMWare ESXi does not have the full "console OS" like classic ESX does.  But, it does support writing its log data to a remote syslog server.  Splunk can play the role of this syslog server, receiving this as a UDP input.&lt;/P&gt;

&lt;P&gt;Refer to the VMWare doc &lt;A href="http://kb.vmware.com/selfservice/microsites/search.do?language=en_US&amp;amp;cmd=displayKC&amp;amp;externalId=1016621" rel="nofollow"&gt;http://kb.vmware.com/selfservice/microsites/search.do?language=en_US&amp;amp;cmd=displayKC&amp;amp;externalId=1016621&lt;/A&gt; on configuring VMWare to emit syslog messages over UDP.&lt;/P&gt;

&lt;P&gt;Refer to the Splunk doc &lt;A href="http://www.splunk.com/base/Documentation/latest/Admin/Monitornetworkports" rel="nofollow"&gt;http://www.splunk.com/base/Documentation/latest/Admin/Monitornetworkports&lt;/A&gt; for information on configuring Splunk to accept syslog input via UDP.&lt;/P&gt;

&lt;P&gt;One caveat is this may not work with the "Free" version of VMWare ESXi as the free license won't allow it.  (I've not tested it, so I don't know for sure)&lt;/P&gt;</description>
    <pubDate>Tue, 07 Sep 2010 05:23:20 GMT</pubDate>
    <dc:creator>dwaddle</dc:creator>
    <dc:date>2010-09-07T05:23:20Z</dc:date>
    <item>
      <title>Splunk on windows getting syslog from ESXi</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-on-windows-getting-syslog-from-ESXi/m-p/43774#M8180</link>
      <description>&lt;P&gt;I cannot find any info to get this to work.
I am running splunk on a windows vm
I want to gather syslog info from the esxi that is hosting it.
Someone please help &lt;/P&gt;</description>
      <pubDate>Sat, 04 Sep 2010 03:37:00 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-on-windows-getting-syslog-from-ESXi/m-p/43774#M8180</guid>
      <dc:creator>jjackson81281</dc:creator>
      <dc:date>2010-09-04T03:37:00Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk on windows getting syslog from ESXi</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-on-windows-getting-syslog-from-ESXi/m-p/43775#M8181</link>
      <description>&lt;P&gt;VMWare ESXi does not have the full "console OS" like classic ESX does.  But, it does support writing its log data to a remote syslog server.  Splunk can play the role of this syslog server, receiving this as a UDP input.&lt;/P&gt;

&lt;P&gt;Refer to the VMWare doc &lt;A href="http://kb.vmware.com/selfservice/microsites/search.do?language=en_US&amp;amp;cmd=displayKC&amp;amp;externalId=1016621" rel="nofollow"&gt;http://kb.vmware.com/selfservice/microsites/search.do?language=en_US&amp;amp;cmd=displayKC&amp;amp;externalId=1016621&lt;/A&gt; on configuring VMWare to emit syslog messages over UDP.&lt;/P&gt;

&lt;P&gt;Refer to the Splunk doc &lt;A href="http://www.splunk.com/base/Documentation/latest/Admin/Monitornetworkports" rel="nofollow"&gt;http://www.splunk.com/base/Documentation/latest/Admin/Monitornetworkports&lt;/A&gt; for information on configuring Splunk to accept syslog input via UDP.&lt;/P&gt;

&lt;P&gt;One caveat is this may not work with the "Free" version of VMWare ESXi as the free license won't allow it.  (I've not tested it, so I don't know for sure)&lt;/P&gt;</description>
      <pubDate>Tue, 07 Sep 2010 05:23:20 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-on-windows-getting-syslog-from-ESXi/m-p/43775#M8181</guid>
      <dc:creator>dwaddle</dc:creator>
      <dc:date>2010-09-07T05:23:20Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk on windows getting syslog from ESXi</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-on-windows-getting-syslog-from-ESXi/m-p/43776#M8182</link>
      <description>&lt;P&gt;Here is a Splunk Wiki that I referenced along with the already mentioned links:&lt;/P&gt;

&lt;P&gt;&lt;A href="http://www.splunk.com/wiki/Community:VMwareESXSyslog" rel="nofollow"&gt;http://www.splunk.com/wiki/Community:VMwareESXSyslog&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;travis.&lt;/P&gt;</description>
      <pubDate>Tue, 07 Sep 2010 21:20:51 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-on-windows-getting-syslog-from-ESXi/m-p/43776#M8182</guid>
      <dc:creator>thall79</dc:creator>
      <dc:date>2010-09-07T21:20:51Z</dc:date>
    </item>
  </channel>
</rss>

