Getting Data In

how can i get the data from my Pc windows to my splunk entreprise running on linux fedora25

sekeita
New Member

I install spunk enterprise on fedora server on virtual server(VM12 pro) and I try to get the data in ,then I install the forwarder on my PC for monitor Somme folder but it still no working, please can you help me to get the data in my spunk enterprise just for learning purpose

Tags (1)
0 Karma
1 Solution

Richfez
SplunkTrust
SplunkTrust

There's a full set of documentation for how to forward data at docs.splunk.com.

It will walk you through a checklist, which is that you need to
a) Configure receiving on your indexer
b) Install the UF (which you've done)
c) Configure the UF to forward data to that indexer's receiving port
d) Configure the UF to actually collect and send in data.

A) is done on the Splunk server in settings/Forwarding and Receiving.
B) You've done.
C) Should have been done at install of the UF. If not, it's easy enough to add later with the add forwarder-server command.

If you could go through that, it explains things in more detail than I could here. It'll take a bit of reading, but if you get stuck ask back here again, we can help with specific problems really well!

Happy Splunking,
Rich

View solution in original post

0 Karma

Richfez
SplunkTrust
SplunkTrust

There's a full set of documentation for how to forward data at docs.splunk.com.

It will walk you through a checklist, which is that you need to
a) Configure receiving on your indexer
b) Install the UF (which you've done)
c) Configure the UF to forward data to that indexer's receiving port
d) Configure the UF to actually collect and send in data.

A) is done on the Splunk server in settings/Forwarding and Receiving.
B) You've done.
C) Should have been done at install of the UF. If not, it's easy enough to add later with the add forwarder-server command.

If you could go through that, it explains things in more detail than I could here. It'll take a bit of reading, but if you get stuck ask back here again, we can help with specific problems really well!

Happy Splunking,
Rich

0 Karma
Get Updates on the Splunk Community!

Built-in Service Level Objectives Management to Bridge the Gap Between Service & ...

Wednesday, May 29, 2024  |  11AM PST / 2PM ESTRegister now and join us to learn more about how you can ...

Get Your Exclusive Splunk Certified Cybersecurity Defense Engineer at Splunk .conf24 ...

We’re excited to announce a new Splunk certification exam being released at .conf24! If you’re headed to Vegas ...

Share Your Ideas & Meet the Lantern team at .Conf! Plus All of This Month’s New ...

Splunk Lantern is Splunk’s customer success center that provides advice from Splunk experts on valuable data ...