All Apps and Add-ons

Splunk app for EMC Isilon for system auditing: How to configure the app to collect syslog server data?

rektoh
New Member

Hi,

I am new to Splunk and try to do my first steps integrating this app into our Isilon demo environment. My indexer server runs on Windows 2008 and I am not sure if I need to install a syslog server on this server, or if the Splunk indexer server has this function integrated already? If the installation of syslog is needed, is there an advice which product is best for such an environment?

Because I didn't find any further configuration options, I am not sure how to point the app to the syslog server data. Or does the app also listen on port 514 to capture the data?

Sorry for the beginner questions and thanks for the kind support.

Regards
Hans-Werner

0 Karma

sundareshr
Legend

You may want to consider using this app https://splunkbase.splunk.com/app/2688/ & https://splunkbase.splunk.com/app/2689/ to get you going.

0 Karma
Get Updates on the Splunk Community!

Good Sourcetype Naming

When it comes to getting data in, one of the earliest decisions made is what to use as a sourcetype. Often, ...

See your relevant APM services, dashboards, and alerts in one place with the updated ...

As a Splunk Observability user, you have a lot of data you have to manage, prioritize, and troubleshoot on a ...

Splunk App for Anomaly Detection End of Life Announcement

Q: What is happening to the Splunk App for Anomaly Detection?A: Splunk is officially announcing the ...