Splunk Enterprise Security

tune forwarder

indeed_2000
Motivator

Hi I try to install forwarder in rhel 7, add jboss log path to forward splunk server, but no have performance issue.

1-what type of solution can apply here?
2-tune forwarder?
3-set interval for forwarder that when send data to server e.g. every 60 min?

4-try to send data to splunk server through udp?

any idea?

Labels (1)
Tags (2)
0 Karma

isoutamo
SplunkTrust
SplunkTrust

Hi

this should be a basic case for UF. Can you send your current UF configuration and describe little bite more what you are meaning with this performance issue?

r. Ismo

0 Karma
Get Updates on the Splunk Community!

Introduction to Splunk Observability Cloud - Building a Resilient Hybrid Cloud

Introduction to Splunk Observability Cloud - Building a Resilient Hybrid Cloud  In today’s fast-paced digital ...

Observability protocols to know about

Observability protocols define the specifications or formats for collecting, encoding, transporting, and ...

Take Your Breath Away with Splunk Risk-Based Alerting (RBA)

WATCH NOW!The Splunk Guide to Risk-Based Alerting is here to empower your SOC like never before. Join Haylee ...