How to route ECS Real Time logs in Splunk?
please give an idea about how to route ECS real-time logs in Splunk enterprise.
I do this with Splunk cloud, but in Splunk enterprise don't have any option for that, please let me know if anyone has any idea about real-time logs in Splunk.
please help