This application consists of a servlet that captures the POST and/or GET
parameters for any HTTP request and sends to standard output a set of
<TAG>=<VALUE> terms seen as an event in Splunk. Because tag=value are the
terms in the events, automatic field extraction for search and reports will
occur for these terms. The purpose of this boiler plate Java Servlet is to
serve as a parameter collector for HTTP POST and GET requests that can be
customized for deployment.
The servlet developed here was tested on Apache Tomcat 6.x, although it should
work in any servlet container. To further solidify it's usage, the user
may want to investigate using log4j as the framework for log collection. In
the Tomcat implementation, the output is captured in a configurable log rotated
file to be monitored by Splunk.
*** OPTIONAL ***
This version also includes a servlet that uses the log4j framework.
tar -zxvf the distribution and read the README for installation notes.</VALUE></TAG>