Getting Data In

Syslog data with SSL enabled

arkonner
Path Finder

To enforce security should be possible to configure a syslog listener with SSL enabled

0 Karma

FrankVl
Ultra Champion

What exactly is your question?

For sending SSL syslog data directly into Splunk, you can use a tcp-ssl input, see inputs.conf spec for details.

In general it is considered best practice not to send syslog data directly to UDP/TCP inputs, but rather use a syslog daemon (rsyslog / syslog-ng) to receive the data and write it to disk, and then use file monitor inputs to get the data into splunk.

Both rsyslog and syslog-ng support SSL syslog as far as I know, You best refer to the documentation of those tools themselves for details if you want to take that route.

0 Karma
Get Updates on the Splunk Community!

Routing logs with Splunk OTel Collector for Kubernetes

The Splunk Distribution of the OpenTelemetry (OTel) Collector is a product that provides a way to ingest ...

Welcome to the Splunk Community!

(view in My Videos) We're so glad you're here! The Splunk Community is place to connect, learn, give back, and ...

Tech Talk | Elevating Digital Service Excellence: The Synergy of Splunk RUM & APM

Elevating Digital Service Excellence: The Synergy of Real User Monitoring and Application Performance ...