Monitoring Splunk

desktop log files

jgervin
New Member

Is it possible to monitor all my desktop machines log files (50 desktops). If possible I would assume its accomplished via some sort of forwarder? Beginner so be easy on me.... need step by step instructions.

Tags (1)
0 Karma

Damien_Dallimor
Ultra Champion

Windows, Linux, Mac desktops ... you can just use the Splunk Universal Forwarder (UF).

Download Here

Universal Forwarder Documentation

For ease of desktop management, you could bundle the UF and its config as part of the base Operating System image.

Or for a bit more flexibility, you could also configure the UF's centrally using Splunk Deployment Server or a third party tool like Puppet or Chef.

Get Updates on the Splunk Community!

Building Reliable Asset and Identity Frameworks in Splunk ES

 Accurate asset and identity resolution is the backbone of security operations. Without it, alerts are ...

Cloud Monitoring Console - Unlocking Greater Visibility in SVC Usage Reporting

For Splunk Cloud customers, understanding and optimizing Splunk Virtual Compute (SVC) usage and resource ...

Automatic Discovery Part 3: Practical Use Cases

If you’ve enabled Automatic Discovery in your install of the Splunk Distribution of the OpenTelemetry ...