Getting Data In

Is there a risk of losing log data in HTTP event Collector?

c71996
Explorer

I want to use Splunk for Enterprise level centralized logging.

It collects data from all applications and systems.

Need inputs and approach.

HTTP event Collector is better to collect application logs?

On more load of logs ....does it have the risk of losing log data in HTTP event Collector?

0 Karma

nickhills
Ultra Champion

These are very basic quiestions which would very need detailed responses.

I would start with this guide: https://docs.splunk.com/Documentation/Splunk/8.0.1/Data/Getstartedwithgettingdatain
and: https://docs.splunk.com/Documentation/Splunk/8.0.1/Data/Usingforwardingagents

HTTP event Collector is a high throughput tool, but given the format and context of your question I suggest you start with Universal Forwarders to collect application logs.

If my comment helps, please give it a thumbs up!
0 Karma

c71996
Explorer

Does forwarder creates events based on application log log files incremental way and send events tk splunk ?

0 Karma

nickhills
Ultra Champion

Yes, a forwarder will read application log files (text based, windows event logs, and thousands of others) incrementally, and will create an event in Splunk for each event in the log file.

Each application can be configured to send logs to different sourcetypes allowing you to search, filter or collorate across hosts, applications and event data

If my comment helps, please give it a thumbs up!
0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.
Get Updates on the Splunk Community!

Introduction to Splunk AI

How are you using AI in Splunk? Whether you see AI as a threat or opportunity, AI is here to stay. Lucky for ...

Splunk + ThousandEyes: Correlate frontend, app, and network data to troubleshoot ...

Are you tired of troubleshooting delays caused by siloed frontend, application, and network data? We've got a ...

Maximizing the Value of Splunk ES 8.x

Splunk Enterprise Security (ES) continues to be a leader in the Gartner Magic Quadrant, reflecting its pivotal ...