Splunk Search

Auto forward logs to Splunk platform

lllidan
New Member

Dear all.

recently, i am try to use Splunk Free , how can i take the forwarder auto send logs to receiver after installed ?

as before, i will select "Data inputs---Forwarded inputs---Windows Event Logs" to input the logs from forwarder manually, but in Free version, platform doesn't support this feature, my platform and forwarder version is 7.0.2.

thanks in advance.

0 Karma
1 Solution

HiroshiSatoh
Champion
0 Karma

HiroshiSatoh
Champion

I think that it is good to install and transfer "universal forwarder".
http://docs.splunk.com/Documentation/SplunkCloud/latest/Data/MonitorWindowseventlogdata

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Automated Threat Analysis: Available in ES Premier

Automated Threat Analysis: Centralize and Accelerate Phishing Investigations in Splunk Enterprise ...

What’s New in Splunk AI: Volume 02

Welcome to the second edition of “What’s New in Splunk AI” where we look at the latest and greatest updates, ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...