Splunk Enterprise

How can I monitor logs of a computer which is far of my own computer (connected to the WAN)?

jbosano
Engager

I want to follow logs on a remote computer, not connected to my lan but connected to the internet. How can I do?

Tags (1)
0 Karma

DalJeanis
Legend

If you have the authority to connect to that computer over the internet, then you can set that connection up so that splunk shares that authority.

It might be easier or more appropriate to set the other computer up to push the logs to a place that splunk can pull them without breaching security. They could be mirrored out to a google drive, or a number of other solutions. It all depends upon your security posture with regard to each of the boxes, and the sensitivity of the data.

0 Karma
Get Updates on the Splunk Community!

Splunk MCP & Agentic AI: Machine Data Without Limits

  Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization ...

Finding Based Detections General Availability

Overview  We’ve come a long way, folks, but here in Enterprise Security 8.4 I’m happy to announce Finding ...

Get Your Hands Dirty (and Your Shoes Comfy): The Splunk Experience

Hands-On Learning and Technical Seminars  Sometimes, you just need to see the code. For those looking for a ...