Does Splunk provide a way to export/import a source type?
Well, there isn't a feature to do that at a click. But a source type is really just a stanza in your local props.conf
file, so you can use any technology you like to manage and replicate that file elsewhere. See Create source types in the Getting Data In manual, if you have not already read that topic.
Well, there isn't a feature to do that at a click. But a source type is really just a stanza in your local props.conf
file, so you can use any technology you like to manage and replicate that file elsewhere. See Create source types in the Getting Data In manual, if you have not already read that topic.