Splunk Search

Search Sourcetype by Port ingested

Builder

Hi there,

Does anyone have a search that can show me what data was forwarded and ingested by which port?We have multiple ports set up in our environment and id like to monitor what sourcetype is being ingested, how much, and by which port.

Thanks! 

Labels (1)
Tags (2)
0 Karma
State of Splunk Careers

Access the Splunk Careers Report to see real data that shows how Splunk mastery increases your value and job satisfaction.

Find out what your skills are worth!