How to configure inputs.confg & outputs.confg for splunk forwarder on windows pls help me out
As you know, the forwarder is controlled via CLI exclusively as Driany mentioned. Based on that, you will be able to add some stanzas to inputs.conf using command like that one available below:
$ splunk add monitor "C:\logs"
This will write a new stanza in forwarder's inputs.conf and all the configured servers will receive data collect from the files located into "C:\logs" dir.
outputs.conf is used to set up configuration level and groups of indexers which will receive collected data. Give you a chance to read the online manual regarding outputs.conf that is a forwarder's exclusive file: http://docs.splunk.com/Documentation/Splunk/latest/Deploy/Configureforwarderswithoutputs.confd
when i was execute cmd in bin directory
spunk setup was coming after clicking yes it will take 1min after that i got message unable to start forwarder
i did not configure anything while i was installing may b that is reason how to overcome that..pls
What do you mean? You need an input to define what is input to the forwarder and you need an output to define what is output to the indexer. If read the link I've pasted above you'll have a good understanding of how they work and how to configure the outputs, the inputs are identical to the indexer configuration so just use what you should have learnt from the main Splunk tutorial to build that.