I want to take input from forwarder but before that I want to run python script, just like in enterprise we can add data by doing monitoring from script. To pre filter the content that will be forwarded to splunk.
you could schedule your Python script and write output in a different folder than the source.
Then you can monitor these new files using Splunk Forwarder.
if you're satisfied by this answer, please accept and/or upvote it.
Bye, see next time.
have a look at this doc