Getting Data In

Is there a Splunk Universal Forwarder version for HP-UX 11.00?

mmensch
Path Finder

Hi,

I have a few HP UX version 11.00 servers that I need logs sent to Splunk. I have successfully installed the forwarder on HP UX 11.23, but I do not see a version for 11.00.

Can someone confirm? How else could I get logs into Splunk from this if this is the case?

Thanks for any help.

0 Karma

somesoni2
Revered Legend

The older version of Splunk Universal forwarder might be supported. Check here (change the Version from top right corner dropdown)

http://docs.splunk.com/Documentation/Splunk/6.2.0/Installation/Systemrequirements

0 Karma

jplumsdaine22
Influencer

Doesn't look like its officially supported, only 11.23 and 11.31 See: http://docs.splunk.com/Documentation/Splunk/6.4.0/Installation/Systemrequirements , http://docs.splunk.com/Documentation/Splunk/6.4.0/Installation/InstallonHP-UX and http://www.splunk.com/page/previous_releases#parischpux

Your best bet is probably to use syslog to forward the logs to a host that can run the forwarder.

0 Karma

mmensch
Path Finder

What do you exactly mean "use syslog"?

0 Karma

jplumsdaine22
Influencer

You can configure syslogd to send logs to a remote host, and then use a universal forwarder on the remote host to send the logs to your indexer.

There are a variety of guides out there - I'm not familiar with HPUX so you should probably get in touch with your sysadmins to set this up.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Automated Threat Analysis: Available in ES Premier

Automated Threat Analysis: Centralize and Accelerate Phishing Investigations in Splunk Enterprise ...

What’s New in Splunk AI: Volume 02

Welcome to the second edition of “What’s New in Splunk AI” where we look at the latest and greatest updates, ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...