Splunk Dev

Splunk in docker + UF from windows host

starom
New Member

Hello,

for testing purposes at home I deployed splunk in docker following https://splunk.github.io/docker-splunk/

Splunk Enterprise and UF works flawlessly but I would like to get logs from my windows 10 machine into the splunk docker instance. 

Containers are in same network in docker but the host network is different so the windows host UF cant reach Splunk Enterprise. When switching the containers network to host, it doest work at all. 

I am definitely missing something here. Is it event possible to be sending data from host to a docket container real time as i would like to?

My host is windows 10 running Docker with 2 containers - Splunk UF and Splunk Enterprise.

Thank you.

Labels (1)
0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...