<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: how to collect log in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/how-to-collect-log/m-p/25184#M96634</link>
    <description>&lt;P&gt;The given links are not working  @MHibbin. &lt;BR /&gt;
Could you please share correct links. &lt;/P&gt;</description>
    <pubDate>Tue, 04 Oct 2016 08:16:55 GMT</pubDate>
    <dc:creator>saurabh_tek</dc:creator>
    <dc:date>2016-10-04T08:16:55Z</dc:date>
    <item>
      <title>how to collect log</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/how-to-collect-log/m-p/25179#M96629</link>
      <description>&lt;P&gt;I install splunk in my windows server 2008, collecting log from windows working fine.&lt;BR /&gt;
I need some help to collect log from solaris 10 and cisco device.&lt;BR /&gt;
what should i do?&lt;/P&gt;

&lt;P&gt;please help me.&lt;/P&gt;</description>
      <pubDate>Wed, 30 Nov 2011 05:34:08 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/how-to-collect-log/m-p/25179#M96629</guid>
      <dc:creator>priyohw</dc:creator>
      <dc:date>2011-11-30T05:34:08Z</dc:date>
    </item>
    <item>
      <title>Re: how to collect log</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/how-to-collect-log/m-p/25180#M96630</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;

&lt;P&gt;For your Solaris box(es), I suggest you use forwarders that you install on the hosts. For Cisco devices (appliances?) syslog is probably the way to go. If you already have an existing syslog server to which you send the Cisco logs, you could install a forwarder there, otherwise you can set up Splunk to act as a syslog server, and configure the Cisco devices to send the logs directly to Splunk. &lt;/P&gt;

&lt;P&gt;For more information, please see the documentation for "Getting Data In":&lt;/P&gt;

&lt;P&gt;&lt;A href="http://docs.splunk.com/Documentation/Splunk/4.2.3/Data/WhatSplunkcanmonitor"&gt;http://docs.splunk.com/Documentation/Splunk/4.2.3/Data/WhatSplunkcanmonitor&lt;/A&gt; &lt;/P&gt;

&lt;P&gt;hope this helps,&lt;/P&gt;

&lt;P&gt;kristian&lt;/P&gt;</description>
      <pubDate>Wed, 30 Nov 2011 08:03:07 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/how-to-collect-log/m-p/25180#M96630</guid>
      <dc:creator>kristian_kolb</dc:creator>
      <dc:date>2011-11-30T08:03:07Z</dc:date>
    </item>
    <item>
      <title>Re: how to collect log</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/how-to-collect-log/m-p/25181#M96631</link>
      <description>&lt;P&gt;If the files you are looking for Splunk to collect are stored locally, you will probably need to install a Lightweight Forwarder (LF) or a Universal Forwarder (UF) on the device you wish to collect from (i.e. the Solaris 10 machines). You can find information on these &lt;A href="http://docs.splunk.com/Documentation/Splunk/latest/Deploy/Setupforwardingandreceiving"&gt;here&lt;/A&gt;. And the UF download &lt;A href="http://www.splunk.com/download/universalforwarder"&gt;here&lt;/A&gt;, and for LF it is a normal Splunk install, but you will need to follow the guide &lt;A href="http://docs.splunk.com/Documentation/Splunk/latest/Deploy/Setupforwardingandreceiving"&gt;here&lt;/A&gt;. &lt;/P&gt;

&lt;P&gt;With the cisco devices you are probably best monitoring the network ports (e.g. syslog), you can use the following guide for setting up this, &lt;A href="http://docs.splunk.com/Documentation/Splunk/latest/Deploy/Enableareceiver"&gt;here&lt;/A&gt;.  &lt;/P&gt;

&lt;P&gt;Please note these guides are all part of the Distributed Deployment Manual, which is very useful. You will just need to make sure that for some parts you are using unique ports to avoid conflict with traffic.&lt;/P&gt;

&lt;P&gt;Regards, &lt;/P&gt;</description>
      <pubDate>Wed, 30 Nov 2011 08:25:36 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/how-to-collect-log/m-p/25181#M96631</guid>
      <dc:creator>MHibbin</dc:creator>
      <dc:date>2011-11-30T08:25:36Z</dc:date>
    </item>
    <item>
      <title>Re: how to collect log</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/how-to-collect-log/m-p/25182#M96632</link>
      <description>&lt;P&gt;Thank you for this answer,&lt;BR /&gt;
 i will try it as your suggestion.&lt;/P&gt;</description>
      <pubDate>Wed, 30 Nov 2011 08:43:49 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/how-to-collect-log/m-p/25182#M96632</guid>
      <dc:creator>priyohw</dc:creator>
      <dc:date>2011-11-30T08:43:49Z</dc:date>
    </item>
    <item>
      <title>Re: how to collect log</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/how-to-collect-log/m-p/25183#M96633</link>
      <description>&lt;P&gt;Ok if this does work, can you mark the answer as accepted, as this will help tell the community that your question does not need answering, and it also helps those looking for answers.&lt;/P&gt;</description>
      <pubDate>Wed, 14 Dec 2011 13:34:05 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/how-to-collect-log/m-p/25183#M96633</guid>
      <dc:creator>MHibbin</dc:creator>
      <dc:date>2011-12-14T13:34:05Z</dc:date>
    </item>
    <item>
      <title>Re: how to collect log</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/how-to-collect-log/m-p/25184#M96634</link>
      <description>&lt;P&gt;The given links are not working  @MHibbin. &lt;BR /&gt;
Could you please share correct links. &lt;/P&gt;</description>
      <pubDate>Tue, 04 Oct 2016 08:16:55 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/how-to-collect-log/m-p/25184#M96634</guid>
      <dc:creator>saurabh_tek</dc:creator>
      <dc:date>2016-10-04T08:16:55Z</dc:date>
    </item>
  </channel>
</rss>

