Hi ,
Yes , Usually Workspace one hosted in VM Ware. They generated syslogs , you can use syslog forwarder at workspace side and forward those logs into splunk HF then index it using TA.
Hi ,
Yes , Usually Workspace one hosted in VM Ware. They generated syslogs , you can use syslog forwarder at workspace side and forward those logs into splunk HF then index it using TA.
Splunk HFW seems the best way to get this done.
But, has anyone figured out a way to use HEC Endpoint?
What specific TA are you referring to?
@sheamus69 I am also trying to ingest WorkspaceOne logs into Splunk. Were you able to find a specific TA that worked for this purpose?
Hi,
Anyone figured out the way to integrate please?