Getting Data In

What is the best way to forward Vcenter and ESXi host logs to Splunk?



I am working on a project to get logs from Vcenter and ESXi host to Splunk .

question 1 ) Is Vcenter app for splunk is license based ?or is it a free app ?
question 2 ) Can I install Vcenter app on my Splunk Heavy Forwarder and make it act as DNC ( as per documentation, we need to have DNC server, if we pulling logs using API )
question 3 ) what is the best process and to fwd logs from Vcenter and ESXi server to splunk ?

Thanks in advance.