I downloaded splunk to a separate computer, I want it to monitior my private network, so I also downloaded the at&t splunk app..I opened it and a small window briefly pops up then disappears...how do I get this thing to work for me?
Unfortunately, there are many AT&T U-Verse modems being used and they utilize differing types and formats of data. The modem version (hardware/software) that the App supports and hints regarding the setup are detailed in the README.txt file. If you have the same modem or the modem uses the same logging format, you should be able to following the modem config instructions (README.txt also) to send the syslog messages to your Splunk instance. It is worth noting that the default port that the app uses is UDP:912 but you change change this by modifying the inputs.conf file. Everything else is taken care of for you. All searching within the app is based on sourcetype=u-verse.
Unfortunately, there are many AT&T U-Verse modems being used and they utilize differing types and formats of data. The modem version (hardware/software) that the App supports and hints regarding the setup are detailed in the README.txt file. If you have the same modem or the modem uses the same logging format, you should be able to following the modem config instructions (README.txt also) to send the syslog messages to your Splunk instance. It is worth noting that the default port that the app uses is UDP:912 but you change change this by modifying the inputs.conf file. Everything else is taken care of for you. All searching within the app is based on sourcetype=u-verse.