All Apps and Add-ons

What are the limitations of Splunk Docker Logging driver vs Universal Forwarder?

New Member

What is the best option between Splunk logging driver for Docker or Universal forwarder running on the host or inside the container for sending logs to an indexer server? What are the limitations of Splunk logging driver for Docker.

0 Karma

Esteemed Legend

Go into Splunk Slack and message @mattymo or @ninja. They are the experts there.

0 Karma



From the links that Nate has provided, it looks like it is possible to get more information from the free app for Docker, as well as not having to do much to the docker environment. I'd go with that app.

0 Karma
Get Updates on the Splunk Community!

Splunk Observability Cloud | Unified Identity - Now Available for Existing Splunk ...

Raise your hand if you’ve already forgotten your username or password when logging into an account. (We can’t ...

Index This | How many sides does a circle have?

February 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...

Registration for Splunk University is Now Open!

Are you ready for an adventure in learning?   Brace yourselves because Splunk University is back, and it's ...