Getting Data In

Windows Subsystem for Linux logging

mdmosaraf
New Member

Hi all,

Any idea what type of logs we can onboard for WSL2 and how we can do that.

Labels (2)
0 Karma

venkatasri
SplunkTrust
SplunkTrust

Hi @mdmosaraf 

There is no official Splunk docs supporting WSL, however this link having some discussion around it which is about installing Splunk Enterprise. IS it possible to install Splunk on Ubuntu on Wind... - Splunk Community

If your requirement is to monitor WSL2 and Splunk Enterprise set-up is already running in your network in different host then i would give  a try installation of Splunk Universal Forwarder (UF), Linux version depends on 64/32 bit of your WLS2 OS. If that is successful then add-on Splunk Add-on for Unix and Linux | Splunkbase helps to extract some useful logs from Linux which will be installed on top of  UF.

Note: This is not official as per docs just a trail and test, Splunk might not support if you find issues with it. This may result into your WSL2 performance degradation as well if you are running critical apps just keep it in mind.

-------------------------------------------------------------

An upvote would be appreciated if it helps!

Tags (2)
0 Karma
Get Updates on the Splunk Community!

Splunk Enterprise Security(ES) 7.3 is approaching the end of support. Get ready for ...

Hi friends!    At Splunk, your product success is our top priority. With Enterprise Security (ES), we're here ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk, and empower your SOC to reach new heights! Duration: 1 hour  Prepare to ...

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...