I have Splunk setup and it establishes connection with syslog and splunk universal forwarder from a remote server: I have syslog-ng setup as follows: You can see the c...
...indows machines. Would that single (universal forwarder) be able to receive andforward logs from all those machines? Would that be an acceptable setup?
Regards
Hi,
I'm quite new to Splunk and I get an strange error that I'm unable to find out any help. Basically, when trying to configure the receiving section from "Forwardingandreceiving" I get an e...
...cknowledgment doesn't have an effect if there's no connection at all. Specifically, it says "Without load balancing, the forwarder has no way to continue sending data if its receiving node goes down....
I want to create an alert to reminde to remind me that the number of logs sent by forwarders is increasing dramatically.
For example:
12: 00-13: 00 The number of events sent by the UF is 5...
...ne reports X but the new platform reports Y, about 1/3 the number. Is there a way that I can confirm this update was received by the Forwarders without logging onto each of them? I have over 100 of t...
...o today. I am receiving data from about 150 hosts. Unfortunately, I should be receiving data from closer to 350. My domain controllers are included in the list of the systems that are not forwarding...
Quick question about HF.
Do you necessarily need two separated Splunk instances for Heavy Forwarding data? (One for receivingand one for forwarding).
If not, how can you do this without t...
...et the Forwarder installed.
Now, I want to set up a permanent server on a Windows Server 2008R2 machine and am having issues. I am setting up the forwarder on the same Windows 7 machine I set up forwarding...
Hi,
I have a new HF once accepted logs for about a week, then stopped receiving on almost all logs at a same time.
I compared this HF with the old working one and I don't see rotated logs c...