Deployment Architecture

Help need for splunk rookie. How to Implement forwarders to support Application and Systems Monitoring

Rocky31
Path Finder

I really appreciate the help, thanks in advance
How to Implement forwarders to support Application and Systems Monitoring

Tags (1)
0 Karma
1 Solution

koshyk
Super Champion

hi, your question is too vague.
- What you mean by Application & Systems Monitoring
- Which OS? Where are the data/logs located?

From a high-level
- Install Universal Forwarder.
- Create an app and put inputs.conf to say what to monitor and collect
- Put outputs.conf and put where you want to send the data too
- Once you set-this up, you can extend to larger environments using deployment-server, load balancing etc.

View solution in original post

0 Karma

koshyk
Super Champion

hi, your question is too vague.
- What you mean by Application & Systems Monitoring
- Which OS? Where are the data/logs located?

From a high-level
- Install Universal Forwarder.
- Create an app and put inputs.conf to say what to monitor and collect
- Put outputs.conf and put where you want to send the data too
- Once you set-this up, you can extend to larger environments using deployment-server, load balancing etc.

0 Karma
Get Updates on the Splunk Community!

Building Reliable Asset and Identity Frameworks in Splunk ES

 Accurate asset and identity resolution is the backbone of security operations. Without it, alerts are ...

Cloud Monitoring Console - Unlocking Greater Visibility in SVC Usage Reporting

For Splunk Cloud customers, understanding and optimizing Splunk Virtual Compute (SVC) usage and resource ...

Automatic Discovery Part 3: Practical Use Cases

If you’ve enabled Automatic Discovery in your install of the Splunk Distribution of the OpenTelemetry ...