Getting Data In

sending syslog from tplink

imontanoisoft
Explorer

I am sending syslog from tplink switch but I can not see it in the forwarder management, however I can see the logs in the app search : source="udp:514" sourcetype="syslog"

Tags (1)
0 Karma
1 Solution

acharlieh
Influencer

Forwarder management is for managing Splunk Forwarders with a feature known as Deployment server.

Devices like switches that send logs using syslog protocols would never show up under forwarder management, nor would forwarders whose configuration is managed outside of Deployment server. (such as using Chef or other automation).

You might be interested in this documentation: https://docs.splunk.com/Documentation/Splunk/7.2.4/Updating/Aboutdeploymentserver

View solution in original post

0 Karma

acharlieh
Influencer

Forwarder management is for managing Splunk Forwarders with a feature known as Deployment server.

Devices like switches that send logs using syslog protocols would never show up under forwarder management, nor would forwarders whose configuration is managed outside of Deployment server. (such as using Chef or other automation).

You might be interested in this documentation: https://docs.splunk.com/Documentation/Splunk/7.2.4/Updating/Aboutdeploymentserver

0 Karma
Get Updates on the Splunk Community!

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...

Purpose in Action: How Splunk Is Helping Power an Inclusive Future for All

At Cisco, purpose isn’t a tagline—it’s a commitment. Cisco’s FY25 Purpose Report outlines how the company is ...

[Upcoming Webinar] Demo Day: Transforming IT Operations with Splunk

Join us for a live Demo Day at the Cisco Store on January 21st 10:00am - 11:00am PST In the fast-paced world ...