Splunk Cloud Platform

splunk Universal forwarder

iherb_0718
Path Finder

Is the data that is sent from a splunk Universal Forwarder to the heavy forwarder, syslog messages?  If so, how do I find out which format it is using (ie: syslog-ng)

Labels (1)
0 Karma
1 Solution

scelikok
Champion

Hi @iherb_0718,

Splunk instances data communication is called S2S (Splunk to Splunk) are proprietary TCP communications. They are not syslog. 

If this reply helps you an upvote is appreciated.

View solution in original post

0 Karma

scelikok
Champion

Hi @iherb_0718,

Splunk instances data communication is called S2S (Splunk to Splunk) are proprietary TCP communications. They are not syslog. 

If this reply helps you an upvote is appreciated.

View solution in original post

0 Karma
.conf21 Now Fully Virtual!
Register for FREE Today!

We've made .conf21 totally virtual and totally FREE! Our completely online experience will run from 10/19 through 10/20 with some additional events, too!