<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: whether the freee splunk version could not configure syslog forward to third-party log server ?? in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/whether-the-freee-splunk-version-could-not-configure-syslog/m-p/135035#M97818</link>
    <description>&lt;P&gt;Hi wyldkao,&lt;/P&gt;

&lt;P&gt;check this &lt;A href="http://docs.splunk.com/Documentation/Splunk/latest/Admin/MoreaboutSplunkFree"&gt;http://docs.splunk.com/Documentation/Splunk/latest/Admin/MoreaboutSplunkFree&lt;/A&gt; there you can find information about the difference of free vs enterprise licens.&lt;/P&gt;

&lt;P&gt;the docs only mention TCP/HTTP forward is not available...syslog is UDP by default. I haven't tested it my self so I cannot be 100% sure on this....&lt;/P&gt;

&lt;P&gt;cheers, MuS&lt;/P&gt;</description>
    <pubDate>Thu, 17 Apr 2014 08:21:40 GMT</pubDate>
    <dc:creator>MuS</dc:creator>
    <dc:date>2014-04-17T08:21:40Z</dc:date>
    <item>
      <title>whether the freee splunk version could not configure syslog forward to third-party log server ??</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/whether-the-freee-splunk-version-could-not-configure-syslog/m-p/135034#M97817</link>
      <description>&lt;P&gt;Hi All&lt;BR /&gt;
    I am testing splunk forward to non-splunk log server. I had tested use TCPData , the third party log server could receive log from splunk, but it seem parse error (every attribute as one event), then I try to use syslog mode, but splunk seem no response.&lt;BR /&gt;
    I check splunk's answer, and find a question similar with me, and one provide his answer that free splunk does not provide syslog forward. &lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;&lt;A href="http://answers.splunk.com/answers/109250/sending-splunk-data-to-syslog-server" target="test_blank"&gt;http://answers.splunk.com/answers/109250/sending-splunk-data-to-syslog-server&lt;/A&gt;

Because I have no license to verify, so who could help me to check this answer ??
&lt;/CODE&gt;&lt;/PRE&gt;

&lt;P&gt;thanks!!&lt;/P&gt;</description>
      <pubDate>Thu, 17 Apr 2014 08:15:18 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/whether-the-freee-splunk-version-could-not-configure-syslog/m-p/135034#M97817</guid>
      <dc:creator>wyldkao</dc:creator>
      <dc:date>2014-04-17T08:15:18Z</dc:date>
    </item>
    <item>
      <title>Re: whether the freee splunk version could not configure syslog forward to third-party log server ??</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/whether-the-freee-splunk-version-could-not-configure-syslog/m-p/135035#M97818</link>
      <description>&lt;P&gt;Hi wyldkao,&lt;/P&gt;

&lt;P&gt;check this &lt;A href="http://docs.splunk.com/Documentation/Splunk/latest/Admin/MoreaboutSplunkFree"&gt;http://docs.splunk.com/Documentation/Splunk/latest/Admin/MoreaboutSplunkFree&lt;/A&gt; there you can find information about the difference of free vs enterprise licens.&lt;/P&gt;

&lt;P&gt;the docs only mention TCP/HTTP forward is not available...syslog is UDP by default. I haven't tested it my self so I cannot be 100% sure on this....&lt;/P&gt;

&lt;P&gt;cheers, MuS&lt;/P&gt;</description>
      <pubDate>Thu, 17 Apr 2014 08:21:40 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/whether-the-freee-splunk-version-could-not-configure-syslog/m-p/135035#M97818</guid>
      <dc:creator>MuS</dc:creator>
      <dc:date>2014-04-17T08:21:40Z</dc:date>
    </item>
    <item>
      <title>Re: whether the freee splunk version could not configure syslog forward to third-party log server ??</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/whether-the-freee-splunk-version-could-not-configure-syslog/m-p/135036#M97819</link>
      <description>&lt;P&gt;HI MuS&lt;BR /&gt;
    thanks your reply.&lt;BR /&gt;
    I like the previous question, only set my setting in outputs.conf (I did not set transforms.conf or props.conf)&lt;BR /&gt;
 [syslog:my_syslog_group]&lt;BR /&gt;
server = 192.168.0.73:1555&lt;/P&gt;

&lt;P&gt;indeed no event or message to third-party log server...&lt;BR /&gt;
Because I just testing , not Splunk Customer, so I could not verify it.&lt;/P&gt;

&lt;P&gt;wyldkao&lt;/P&gt;</description>
      <pubDate>Mon, 28 Sep 2020 16:24:44 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/whether-the-freee-splunk-version-could-not-configure-syslog/m-p/135036#M97819</guid>
      <dc:creator>wyldkao</dc:creator>
      <dc:date>2020-09-28T16:24:44Z</dc:date>
    </item>
    <item>
      <title>Re: whether the freee splunk version could not configure syslog forward to third-party log server ??</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/whether-the-freee-splunk-version-could-not-configure-syslog/m-p/135037#M97820</link>
      <description>&lt;P&gt;Hi All&lt;BR /&gt;
   Who had tested syslog forward to third-party log server ??&lt;BR /&gt;
or Splunk has another trail licesne could test All function in short days, like 30 days trail license&lt;/P&gt;</description>
      <pubDate>Mon, 21 Apr 2014 01:40:46 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/whether-the-freee-splunk-version-could-not-configure-syslog/m-p/135037#M97820</guid>
      <dc:creator>wyldkao</dc:creator>
      <dc:date>2014-04-21T01:40:46Z</dc:date>
    </item>
    <item>
      <title>Re: whether the freee splunk version could not configure syslog forward to third-party log server ??</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/whether-the-freee-splunk-version-could-not-configure-syslog/m-p/135038#M97821</link>
      <description>&lt;P&gt;First 60-days of trial is not restricted of any functionality and hence should not be any different than an Enterprise commercial license during the trial period.&lt;/P&gt;

&lt;P&gt;Certain features get disabled after the 60-day trial period is over.&lt;/P&gt;</description>
      <pubDate>Mon, 21 Apr 2014 05:52:43 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/whether-the-freee-splunk-version-could-not-configure-syslog/m-p/135038#M97821</guid>
      <dc:creator>miteshvohra</dc:creator>
      <dc:date>2014-04-21T05:52:43Z</dc:date>
    </item>
    <item>
      <title>Re: whether the freee splunk version could not configure syslog forward to third-party log server ??</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/whether-the-freee-splunk-version-could-not-configure-syslog/m-p/135039#M97822</link>
      <description>&lt;P&gt;Hi &lt;BR /&gt;
   about your reply, if I install splunk doftware without license (500MB/Day) is you say "60 days trail".&lt;BR /&gt;
    My mean is I oculd testing all function without license in 60 days, right ?&lt;/P&gt;

&lt;P&gt;thanks!!&lt;/P&gt;</description>
      <pubDate>Mon, 21 Apr 2014 06:13:37 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/whether-the-freee-splunk-version-could-not-configure-syslog/m-p/135039#M97822</guid>
      <dc:creator>wyldkao</dc:creator>
      <dc:date>2014-04-21T06:13:37Z</dc:date>
    </item>
    <item>
      <title>Re: whether the freee splunk version could not configure syslog forward to third-party log server ??</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/whether-the-freee-splunk-version-could-not-configure-syslog/m-p/135040#M97823</link>
      <description>&lt;P&gt;Yes. Here is the link for more details: &lt;A href="http://www.splunk.com/view/SP-CAAAE8W"&gt;http://www.splunk.com/view/SP-CAAAE8W&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 21 Apr 2014 07:02:56 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/whether-the-freee-splunk-version-could-not-configure-syslog/m-p/135040#M97823</guid>
      <dc:creator>miteshvohra</dc:creator>
      <dc:date>2014-04-21T07:02:56Z</dc:date>
    </item>
  </channel>
</rss>

