i am trying to forward all the indexed data to a non-splunk system. my questions is does we need to use any specific software or we can forward to a linux machine??
if it is linux machine, i hope i should make a change to outputs.conf . please correct me if am doing it in a wrong way
You can forward your data to any other third-party software, for example a syslog server. For more information on how to accomplish that, you can use this link: http://docs.splunk.com/Documentation/Splunk/6.4.1/Forwarding/Forwarddatatothird-partysystemsd
View solution in original post
Thanks for your reply
one last question is it mandatory to use software for receiving?? can't we forward to a simple linux machine which listens on a specific port???
You can, but you will need something to translate this data being received. Anyway, since your linux machine is listening to the port you will receive data.