Splunk Cloud Platform

How to connect a heavy forwarder to Splunk Cloud?

Dayane_tr
Path Finder

Hello,

I have a linux machine where Splunk Enterprise is installed and I would like to use Heavy forwarder to send the files to the cloud.

How do I install the "app"(splunkclouduf.spl)  from the cloud instance in Splunk Enterprise? 

I don't have access to the Splunk Enterprise web interface, only access to the linux machine.

Regards

Labels (2)
Tags (2)
0 Karma

PickleRick
SplunkTrust
SplunkTrust

I never remember the proper syntax, but it's either

/opt/splunk/bin/splunk app install app_package.spl

or

/opt/splunk/bin/splunk install app app_package.spl

 

0 Karma

Roy_9
Motivator

@Dayane_tr  After the untar is done as rich suggested, you should open a FW connection from HF to Splunk Cloud(basically will be as inputs*.abc.splunkcloud.com) something like that on port 9997.

0 Karma

richgalloway
SplunkTrust
SplunkTrust

Install the app like you would install any other app on the command line.  Untar the file to $SPLUNK_HOME/etc/apps then restart the HF.

tar -zxf splunkclouduf.spl -C /opt/splunk/etc/apps
---
If this reply helps you, Karma would be appreciated.
Get Updates on the Splunk Community!

Webinar Recap | Revolutionizing IT Operations: The Transformative Power of AI and ML ...

The Transformative Power of AI and ML in Enhancing Observability   In the realm of IT operations, the ...

.conf24 | Registration Open!

Hello, hello! I come bearing good news: Registration for .conf24 is now open!   conf is Splunk’s rad annual ...

ICYMI - Check out the latest releases of Splunk Edge Processor

Splunk is pleased to announce the latest enhancements to Splunk Edge Processor.  HEC Receiver authorization ...