<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Inserting mac os event logs in splunk in Monitoring Splunk</title>
    <link>https://community.splunk.com/t5/Monitoring-Splunk/Inserting-mac-os-event-logs-in-splunk/m-p/685409#M10139</link>
    <description>&lt;P&gt;I am really struggling to add my macos data into splunk just like how we can upload the event logs of windows. is there any add-ons that i can install to help me do this? if there is, can anyone explain how to configure it and make it work?&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 25 Apr 2024 08:07:07 GMT</pubDate>
    <dc:creator>pulen</dc:creator>
    <dc:date>2024-04-25T08:07:07Z</dc:date>
    <item>
      <title>Inserting mac os event logs in splunk</title>
      <link>https://community.splunk.com/t5/Monitoring-Splunk/Inserting-mac-os-event-logs-in-splunk/m-p/685409#M10139</link>
      <description>&lt;P&gt;I am really struggling to add my macos data into splunk just like how we can upload the event logs of windows. is there any add-ons that i can install to help me do this? if there is, can anyone explain how to configure it and make it work?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 25 Apr 2024 08:07:07 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Monitoring-Splunk/Inserting-mac-os-event-logs-in-splunk/m-p/685409#M10139</guid>
      <dc:creator>pulen</dc:creator>
      <dc:date>2024-04-25T08:07:07Z</dc:date>
    </item>
    <item>
      <title>Re: Inserting mac os event logs in splunk</title>
      <link>https://community.splunk.com/t5/Monitoring-Splunk/Inserting-mac-os-event-logs-in-splunk/m-p/685414#M10140</link>
      <description>&lt;P&gt;To get you started here's a number of links for you read and work through&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;In short you need the nix TA, UF and configure inputs and outputs based on your requirements.&lt;/P&gt;&lt;P&gt;#This shows you the TA Required (Nix TA)&lt;BR /&gt;&lt;A href="https://splunkbase.splunk.com/app/833" target="_blank"&gt;https://splunkbase.splunk.com/app/833&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;#This shows you the OS Supported = MacOs is listed&lt;BR /&gt;&lt;A href="https://docs.splunk.com/Documentation/AddOns/latest/UnixLinux/About" target="_blank"&gt;https://docs.splunk.com/Documentation/AddOns/latest/UnixLinux/About&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;#Read the release notes&lt;BR /&gt;&lt;A href="https://docs.splunk.com/Documentation/AddOns/released/UnixLinux/Releasenotes" target="_blank"&gt;https://docs.splunk.com/Documentation/AddOns/released/UnixLinux/Releasenotes&lt;/A&gt;&lt;/P&gt;&lt;P&gt;And you will need to install a Universal Forwarder for the MacOS + configure outputs and TA inputs&lt;BR /&gt;&lt;A href="https://www.splunk.com/en_us/download/universal-forwarder.html" target="_blank"&gt;https://www.splunk.com/en_us/download/universal-forwarder.html&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 25 Apr 2024 08:22:40 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Monitoring-Splunk/Inserting-mac-os-event-logs-in-splunk/m-p/685414#M10140</guid>
      <dc:creator>deepakc</dc:creator>
      <dc:date>2024-04-25T08:22:40Z</dc:date>
    </item>
  </channel>
</rss>

