We are having Splunk Enterprise version(7.1.0) for reading data from different indexes.
But we have been provided large XML files from an eStore Application which are having live data.
SPLUNK will have to index that live data and generate alerts based on the configured reports
Could you anyone kindly suggest if similar level of work has been done in any project in within TCS.
if the files are getting stored in some location and you know the server path down to the folder, you can try the usual forwarder approach.
Your best option is to try using the heavy forwarder at the file location