Hi,
I am trying to send logs from PCF to Splunk through HttpEventCollectorLogbackAppender and logstash Layout, i have also formatted my log data with splunk required meta data and event data but i cant see the logs in splunk. Can anyone give suggestions how to send to splunk.
My message :
"index" : ...,
"source-tye": ...,
"source": ,
"host":
"time":
event: {
},
Fields:{
}
Thanks
This should give you everything that you need to test and debug:
https://docs.splunk.com/Documentation/Splunk/latest/Data/HTTPEventCollectortokenmanagement
http://blogs.splunk.com/2015/10/06/http-event-collector-your-direct-event-pipe-to-splunk-6-3/
http://dev.splunk.com/view/event-collector/SP-CAAAE7F