Splunk Cloud Platform

heavy forwarder setup to forward to splunk cloud

verifi81
Path Finder

In the event that universal forwarders installed on internal servers forward to a heavy forwarder and the heavy forwarder forwards to splunk cloud, is the heavy forwarder indexing before sending to splunk cloud?

Labels (1)
0 Karma
1 Solution

anilchaithu
Builder

@verifi81 

In general, HF's won't index data before forwarding to indexers.

View solution in original post

0 Karma

anilchaithu
Builder

@verifi81 

In general, HF's won't index data before forwarding to indexers.

0 Karma
Get Updates on the Splunk Community!

Cisco Catalyst Center Meets Splunk ITSI: From 'Payments Are Down' to Root Cause in ...

The Problem: When Networks and Services Don't Talk Payment systems fail at a retail location. Customers are ...

Print, Leak, Repeat: UEBA Insider Threats You Can't Ignore

Are you ready to uncover the threats hiding in plain sight? Join us for "Print, Leak, Repeat: UEBA Insider ...

New Year, New Changes for Splunk Certifications

As we embrace a new year, we’re making a small but important update to the Splunk Certification ...