Getting Data In

Local Event Log Collection on Mac

White-Hax
New Member

Hello,

I am brand new to Splunk and after watching a short tutorial to get started, I saw that Settings => Data Input => Local Event Log Collection did not appear on my version of Splunk Enterprise. I have it on Mac OS Monterey and it seems to work fine, but I know most use it on Windows. Please, can someone help me find how to log local events on Splunk for Mac?

Thank you for your help.

Noé

Labels (3)
0 Karma

isoutamo
SplunkTrust
SplunkTrust

Hi

the newer splunk versions have added own monitor for macOS’ logd. You should use it. https://lantern.splunk.com/Data_Descriptors/Mac_OS/Collecting_Mac_OS_log_files
r. Ismo

0 Karma
Get Updates on the Splunk Community!

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...

Splunk MCP & Agentic AI: Machine Data Without Limits

Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization uses ...