I have an application which send event to HTTP event collector and writes a backup log to disk.
Can I somehow configure Splunk to index a log file, incase HTTP endpoint will be unavailable? How could I deduplicate the events?