I have been reading link:Splunk 4.2 Universal Forwarder *nix
Why does a universal forwarder need the entire *nix application, isn't the
3 - Copy /splunk/etc/apps/unix/default/app.conf to /s...
Hi everyone,
Can someone confirm or verify that I can run the Splunk App for *Nix v5.01 on a Windows Indexer/Search Head?
I realize that I can not access the app via IE, but the documentation i...
I have machines that has only the Universal Forwarder installed. How to I install and configure Splunk for *nix to run on these machines and forward data to the Indexer?
How can I specify the default index to use for a specific app?
I have an App with a few inputs defined that put all of their content into an app-specific index, index_myApp. I have a number of rep...
I have a standalone instance of Splunk. I am running both:
Splunk Add-on for Unix and Linux, and
Splunk App for Unix.
Since the Splunk App for Unix has reached End-of-Life and is not requir...
Anyone else get this typo error with the eventgen.conf
`Checking: $splunk/etc/apps/Splunk_TA_nix/default/eventgen.conf
Possible typo in stanza [sample\.(openPortsEnhanced|passwd|service|u...
Hello Splunkers,
What is the average CPU/memory usage of a universal forwarder and heavy forwarder ? ( The average for a forwarder collecting *Nix perf for example)
Regards,
David
Hi, we have trouble seeing the data, sent by syslog in format cef, from the imperva to splunk. we have Splunk Add-on for Imperva SecureSphere WAF installed. thanks for your quick resp...
The document that provides instructions on how to install Splunk TA for Unix on a Universal Forwarder is for a .tar.gz file. However, the downloaded version I received from Splunk Apps is .tgz file ...
The file /var/log/wtmp is where most *nix systems keep track of all logins and logouts to the system.
The file is not plain text, however, and contains binary data :
[root@dirtysanchez ~]# f...