Getting Data In

App for Linux on Windows Indexer

arindam_sur
New Member

Hi,
I have Indexer installed on a Windows machine, which is collecting logs from a Linux machine through UDP Syslog. I have installed the Splunk for *nix app on the Windows Indexer, but I cannot configure the app to query on Linux logs and it says,"the app is not installed on a Unix machine". Is there any app specific to Linux, which can be installed on Windows indexer collecting logs from a Linux machine?

Tags (2)
0 Karma

jtworzydlo
Path Finder

The *nix app is designed to work on both Windows and Linux indexers. However it needs to communicate with *nix TA (Technology AddOn) which needs to be installed on the Linux machine you want to collect the data from.
If the UDP Syslog data you want to collect is not specific for *nix app, but is your own -> you don't need to have the *nix app.

Get Updates on the Splunk Community!

Splunk MCP & Agentic AI: Machine Data Without Limits

  Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization ...

Finding Based Detections General Availability

Overview  We’ve come a long way, folks, but here in Enterprise Security 8.4 I’m happy to announce Finding ...

Get Your Hands Dirty (and Your Shoes Comfy): The Splunk Experience

Hands-On Learning and Technical Seminars  Sometimes, you just need to see the code. For those looking for a ...