I am sending syslog from tplink switch but I can not see it in the forwarder management, however I can see the logs in the app search : source="udp:514" sourcetype="syslog"
Forwarder management is for managing Splunk Forwarders with a feature known as Deployment server.
Devices like switches that send logs using syslog protocols would never show up under forwarder management, nor would forwarders whose configuration is managed outside of Deployment server. (such as using Chef or other automation).
You might be interested in this documentation: https://docs.splunk.com/Documentation/Splunk/7.2.4/Updating/Aboutdeploymentserver
Forwarder management is for managing Splunk Forwarders with a feature known as Deployment server.
Devices like switches that send logs using syslog protocols would never show up under forwarder management, nor would forwarders whose configuration is managed outside of Deployment server. (such as using Chef or other automation).
You might be interested in this documentation: https://docs.splunk.com/Documentation/Splunk/7.2.4/Updating/Aboutdeploymentserver