Hi,
we are receiving logs from UF and syslog and now we have a request for forwarding particular raw windows event to another syslog server. Anybody have experience with something like this?
Hi @egcp,
see this page: https://docs.splunk.com/Documentation/Splunk/9.0.1/Forwarding/Routeandfilterdatad#Replicate_a_subset...
Ciao.
Giuseppe