Getting Data In

How to configure outputs.conf on a forwarder to route logs to different sets of indexers?

New Member

We have single server where we installed a Splunk forwarder and we want to configure outputs.conf such a way that certain logs will be sent to one set of indexers and certain logs have to be sent to different indexers.

0 Karma

Revered Legend
0 Karma
Register for .conf21 Now! Go Vegas or Go Virtual!

How will you .conf21? You decide! Go in-person in Las Vegas, 10/18-10/21, or go online with .conf21 Virtual, 10/19-10/20.