<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: UF in Linux how to configure in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/UF-in-Linux-how-to-configure/m-p/241423#M96128</link>
    <description>&lt;P&gt;Hi fazilhussain,&lt;/P&gt;

&lt;P&gt;that path is correct. Splunk's installation ships with default settings which are found under $SPLUNK_HOME/etc/system/default/.&lt;BR /&gt;
Do &lt;STRONG&gt;not&lt;/STRONG&gt; make changes there. Copy the outputs.conf from the default folder to the local folder and make your configurations there.&lt;/P&gt;

&lt;P&gt;Edit: Addtitional info - The default configs are only used for deploying apps. Configs in etc/system/local will overwride the standard/default settings.&lt;/P&gt;

&lt;P&gt;Skalli&lt;/P&gt;</description>
    <pubDate>Wed, 18 Jan 2017 12:52:09 GMT</pubDate>
    <dc:creator>skalliger</dc:creator>
    <dc:date>2017-01-18T12:52:09Z</dc:date>
    <item>
      <title>UF in Linux how to configure</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/UF-in-Linux-how-to-configure/m-p/241422#M96127</link>
      <description>&lt;P&gt;Dear Friends.&lt;/P&gt;

&lt;P&gt;But I have some doughs I installed the UF in Centos  and followed this cmd.&lt;BR /&gt;
1: /Command: /opt/splunkforwarder/bin/splunk enable boot-start [successful]&lt;BR /&gt;
2 &lt;span class="lia-unicode-emoji" title=":confused_face:"&gt;😕&lt;/span&gt; Now Configure Forwarder connection to Index Server&lt;/P&gt;

&lt;P&gt;Command: /opt/splunkforwarder/bin/splunk add forward-server host. domain:9997 [SUCCESSFUL]&lt;/P&gt;

&lt;P&gt;NOW MY QUESTION IS :&lt;BR /&gt;
I have installed the UF in the below mention Path. Plz let me know if the path is correct.&lt;/P&gt;

&lt;P&gt;[root@localhost] # cd/opt/splunkforwarder/&lt;BR /&gt;
[root@localhost splunkforwarder] # ls -l&lt;BR /&gt;
--r--r--r-- 1 splunk splunk 7555 nov 18 time splunkforwarder-6.5.1 [installed]&lt;/P&gt;

&lt;P&gt;And i cannot access the Below Path to configure the Outputs.conf.&lt;/P&gt;

&lt;P&gt;/opt/splunkforwarder/etc/system/local/outputs.conf –&lt;/P&gt;

&lt;P&gt;I can only go till  /opt/splunkforwarder/etc/  Under /etc/ I cannot find the /system/local/outputs.conf/&lt;/P&gt;

&lt;P&gt;I request you to please help me on this.&lt;/P&gt;

&lt;P&gt;Waiting for your reply.&lt;BR /&gt;
Regards,&lt;/P&gt;</description>
      <pubDate>Wed, 18 Jan 2017 08:56:01 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/UF-in-Linux-how-to-configure/m-p/241422#M96127</guid>
      <dc:creator>fazilhussain</dc:creator>
      <dc:date>2017-01-18T08:56:01Z</dc:date>
    </item>
    <item>
      <title>Re: UF in Linux how to configure</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/UF-in-Linux-how-to-configure/m-p/241423#M96128</link>
      <description>&lt;P&gt;Hi fazilhussain,&lt;/P&gt;

&lt;P&gt;that path is correct. Splunk's installation ships with default settings which are found under $SPLUNK_HOME/etc/system/default/.&lt;BR /&gt;
Do &lt;STRONG&gt;not&lt;/STRONG&gt; make changes there. Copy the outputs.conf from the default folder to the local folder and make your configurations there.&lt;/P&gt;

&lt;P&gt;Edit: Addtitional info - The default configs are only used for deploying apps. Configs in etc/system/local will overwride the standard/default settings.&lt;/P&gt;

&lt;P&gt;Skalli&lt;/P&gt;</description>
      <pubDate>Wed, 18 Jan 2017 12:52:09 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/UF-in-Linux-how-to-configure/m-p/241423#M96128</guid>
      <dc:creator>skalliger</dc:creator>
      <dc:date>2017-01-18T12:52:09Z</dc:date>
    </item>
  </channel>
</rss>

