<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How to configure a heavy forwarder with Splunk Cloud in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/How-to-configure-a-heavy-forwarder-with-Splunk-Cloud/m-p/501275#M85404</link>
    <description>&lt;P&gt;I understood that to send data to Splunk Cloud, I need to download and install the universal forwarder credentials. If I just configure HF to point to cloud without credential, will not work. Make sense?&lt;/P&gt;</description>
    <pubDate>Thu, 05 Dec 2019 12:50:38 GMT</pubDate>
    <dc:creator>marceloamorim</dc:creator>
    <dc:date>2019-12-05T12:50:38Z</dc:date>
    <item>
      <title>How to configure a heavy forwarder with Splunk Cloud</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/How-to-configure-a-heavy-forwarder-with-Splunk-Cloud/m-p/501269#M85398</link>
      <description>&lt;P&gt;Guys,&lt;/P&gt;

&lt;P&gt;I need to configure a heavy forwarder to work with Splunk cloud. &lt;BR /&gt;
There are no documents about it on the Splunk base.&lt;BR /&gt;
This tip does not work: &lt;A href="https://answers.splunk.com/answers/478035/how-to-set-up-a-heavy-forwarder-to-forward-data-to.html"&gt;https://answers.splunk.com/answers/478035/how-to-set-up-a-heavy-forwarder-to-forward-data-to.html&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;Could you help me?&lt;/P&gt;

&lt;P&gt;Marcelo Amorim&lt;/P&gt;</description>
      <pubDate>Wed, 04 Dec 2019 15:49:30 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/How-to-configure-a-heavy-forwarder-with-Splunk-Cloud/m-p/501269#M85398</guid>
      <dc:creator>marceloamorim</dc:creator>
      <dc:date>2019-12-04T15:49:30Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure a heavy forwarder with Splunk Cloud</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/How-to-configure-a-heavy-forwarder-with-Splunk-Cloud/m-p/501270#M85399</link>
      <description>&lt;P&gt;Yes, we can help you, but we need more information.  Explain what "does not work" means.  What are the exact steps you took?  What error messages do you get?&lt;/P&gt;</description>
      <pubDate>Wed, 04 Dec 2019 16:17:05 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/How-to-configure-a-heavy-forwarder-with-Splunk-Cloud/m-p/501270#M85399</guid>
      <dc:creator>richgalloway</dc:creator>
      <dc:date>2019-12-04T16:17:05Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure a heavy forwarder with Splunk Cloud</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/How-to-configure-a-heavy-forwarder-with-Splunk-Cloud/m-p/501271#M85400</link>
      <description>&lt;P&gt;Have you looked at Splunk Docs (docs.splunk.com)?&lt;BR /&gt;
There is a document about deploying heavy forwarders at &lt;A href="https://docs.splunk.com/Documentation/SplunkCloud/8.0.0/Forwarding/Deployaheavyforwarder"&gt;https://docs.splunk.com/Documentation/SplunkCloud/8.0.0/Forwarding/Deployaheavyforwarder&lt;/A&gt;&lt;BR /&gt;
Installing a heavy forwarder for Splunk Cloud is nearly the same as for Splunk Enterprise.  The only difference is you must download the universalforwarder app (don't let the name distract you) from your Cloud instance and install it on your HF.&lt;/P&gt;</description>
      <pubDate>Wed, 04 Dec 2019 16:20:31 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/How-to-configure-a-heavy-forwarder-with-Splunk-Cloud/m-p/501271#M85400</guid>
      <dc:creator>richgalloway</dc:creator>
      <dc:date>2019-12-04T16:20:31Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure a heavy forwarder with Splunk Cloud</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/How-to-configure-a-heavy-forwarder-with-Splunk-Cloud/m-p/501272#M85401</link>
      <description>&lt;P&gt;Hi Richgalloway! &lt;/P&gt;

&lt;P&gt;I didnt took any steps. I am getting information about it&lt;BR /&gt;
I need to install heavy forwarder because I am going to install  Splunk Add-on for Microsoft SQL Server.&lt;BR /&gt;
I am using Splunk Version 7.0.13 - Splunk Build b6e41c05f519&lt;/P&gt;

&lt;P&gt;When I took a look on the documentation to deploy heavy forwarders and this document say to configure the following parameters to send data to Splunk Enterprise: &lt;BR /&gt;
splunk add forward-server : -auth :&lt;BR /&gt;
However, I am using Splunk Cloud.&lt;/P&gt;

&lt;P&gt;When I took a look on the Splunk Cloud documentation, I found only information to configure universal forwarders, through credentials to comunicate with Splunk Cloud instance.&lt;/P&gt;

&lt;P&gt;thanks,&lt;/P&gt;

&lt;P&gt;Marcelo Amorim&lt;/P&gt;</description>
      <pubDate>Wed, 04 Dec 2019 17:25:10 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/How-to-configure-a-heavy-forwarder-with-Splunk-Cloud/m-p/501272#M85401</guid>
      <dc:creator>marceloamorim</dc:creator>
      <dc:date>2019-12-04T17:25:10Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure a heavy forwarder with Splunk Cloud</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/How-to-configure-a-heavy-forwarder-with-Splunk-Cloud/m-p/501273#M85402</link>
      <description>&lt;P&gt;Thanks Richgalloway! Just to make sure, I need to install both HF and UF?&lt;BR /&gt;
Its necessary to do some configuration on the HF?&lt;/P&gt;

&lt;P&gt;Marcelo.&lt;/P&gt;</description>
      <pubDate>Wed, 04 Dec 2019 17:30:55 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/How-to-configure-a-heavy-forwarder-with-Splunk-Cloud/m-p/501273#M85402</guid>
      <dc:creator>marceloamorim</dc:creator>
      <dc:date>2019-12-04T17:30:55Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure a heavy forwarder with Splunk Cloud</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/How-to-configure-a-heavy-forwarder-with-Splunk-Cloud/m-p/501274#M85403</link>
      <description>&lt;P&gt;You do not need a UF, just a HF.  The HF gets the same outputs.conf settings as a UF would, however, so it uses the app you download from your Splunk Cloud instance.  IIRC, it's available from Apps-&amp;gt;Universal Forwarder.&lt;/P&gt;</description>
      <pubDate>Wed, 04 Dec 2019 18:05:19 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/How-to-configure-a-heavy-forwarder-with-Splunk-Cloud/m-p/501274#M85403</guid>
      <dc:creator>richgalloway</dc:creator>
      <dc:date>2019-12-04T18:05:19Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure a heavy forwarder with Splunk Cloud</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/How-to-configure-a-heavy-forwarder-with-Splunk-Cloud/m-p/501275#M85404</link>
      <description>&lt;P&gt;I understood that to send data to Splunk Cloud, I need to download and install the universal forwarder credentials. If I just configure HF to point to cloud without credential, will not work. Make sense?&lt;/P&gt;</description>
      <pubDate>Thu, 05 Dec 2019 12:50:38 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/How-to-configure-a-heavy-forwarder-with-Splunk-Cloud/m-p/501275#M85404</guid>
      <dc:creator>marceloamorim</dc:creator>
      <dc:date>2019-12-05T12:50:38Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure a heavy forwarder with Splunk Cloud</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/How-to-configure-a-heavy-forwarder-with-Splunk-Cloud/m-p/501276#M85405</link>
      <description>&lt;P&gt;Yes, makes sense.&lt;/P&gt;</description>
      <pubDate>Wed, 11 Dec 2019 11:56:27 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/How-to-configure-a-heavy-forwarder-with-Splunk-Cloud/m-p/501276#M85405</guid>
      <dc:creator>richgalloway</dc:creator>
      <dc:date>2019-12-11T11:56:27Z</dc:date>
    </item>
  </channel>
</rss>

