Getting Data In

Universal Forwarder Deployment

dersa
Path Finder

Good morning,

i'm new to Splunk and have a question regarding universal forwarder deployment. I installed the UF on a windows machine, in order to configure it via the deploment server do i have to copy the SplunkForwarder folder from /opt/splunk/etc/apps to /opt/splunk/etc$ cd deployment-apps/ ?
And what files I have to configured to make the client send data to my indexer?

thanks in advanced
Alex

0 Karma

ekost
Splunk Employee
Splunk Employee

There is a highly detailed example using the Deployment Server and what configurations to deploy here.

Get Updates on the Splunk Community!

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...

Operationalizing Entity Risk Score with Enterprise Security 8.3+

Overview Enterprise Security 8.3 introduces a powerful new feature called “Entity Risk Scoring” (ERS) for ...

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...