Disclaimer: This is an issue with VMware and not Splunk. But looking to see if others in the community have seen the same issue.
Our infrastructure team has recently upgraded VMware to v7. We immediately started receiving an additional terabyte of logs from their hosts. They have a support case open with the vendor to figure out why, and the vendor agrees that this is not normal and we shouldn't have seen this volume spike. They're leaning more towards a misconfiguration than a bug. They're also wondering if others in the community have seen the same from VMware v7, and if so how was it handled.
Has anyone who is using v7 of VMware seen the logging spike? If so, how did you resolve it?