Splunk Dev

Splunk in docker + UF from windows host

starom
New Member

Hello,

for testing purposes at home I deployed splunk in docker following https://splunk.github.io/docker-splunk/

Splunk Enterprise and UF works flawlessly but I would like to get logs from my windows 10 machine into the splunk docker instance. 

Containers are in same network in docker but the host network is different so the windows host UF cant reach Splunk Enterprise. When switching the containers network to host, it doest work at all. 

I am definitely missing something here. Is it event possible to be sending data from host to a docket container real time as i would like to?

My host is windows 10 running Docker with 2 containers - Splunk UF and Splunk Enterprise.

Thank you.

0 Karma
Get Updates on the Splunk Community!

Demo Day: Strengthen Your SOC with Splunk Enterprise Security 8.1

Today’s threat landscape is more complex than ever. Security operation centers (SOCs) are overwhelmed with ...

Dashboards: Hiding charts while search is being executed and other uses for tokens

There are a couple of features of SimpleXML / Classic dashboards that can be used to enhance the user ...

Splunk Observability Cloud's AI Assistant in Action Series: Explaining Metrics and ...

This is the fourth post in the Splunk Observability Cloud’s AI Assistant in Action series that digs into how ...