Deployment Architecture

How to forward data to unsplunk system?

niveditahanuman
New Member

I have configured three files outputs.conf, transforms.conf and props.conf but still I am not getting forwarded data on my unsplunk system.
Do I need to do more settings for this please let me know.

Tags (1)
0 Karma

lloydknight
Builder

Hello niveditahanumant,

Have you tried creating an inputs.conf with it?

https://docs.splunk.com/Documentation/Splunk/6.6.2/Admin/Inputsconf

But if you have an existing inputs.conf already including the data that you're monitoring, ensure that the needed port for forwarding (default port for forwarding data is 9997) is allowed in the firewall, and do basic connectivity tests like ping and telnet for assurance.

Hope it helps.

0 Karma

lloydknight
Builder

hello, what do you mean by unsplunk? Is it system/server without splunk installed on it?

0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In the last month, the Splunk Threat Research Team (STRT) has had 2 releases of new security content via the ...

Announcing the 1st Round Champion’s Tribute Winners of the Great Resilience Quest

We are happy to announce the 20 lucky questers who are selected to be the first round of Champion's Tribute ...

We’ve Got Education Validation!

Are you feeling it? All the career-boosting benefits of up-skilling with Splunk? It’s not just a feeling, it's ...