Hello, On a UniversalForwarder can someone tell me where the config is that tells theuniversalforwarder where to send the logs? I need this for Windows and Linux. Thank you
Hi,
We are taken Splunk cloud community edition trail. and we have installed universalforwarder in windows but it is not communicating to cloud server.
We are getting error like this:
&n...
...or some time. I am running SSL on port 9997 between my forwarders and my Indexer. Certs being used are custom.
I recently have had a problem with two UniversalForwarders. They are not forward...
...ave configured it to receive data via port 9997 through the "Forwarding and Receiving" settings page. I have installed a UniversalForwarder on another server. I added a forward-server (side note: C...
Hi, I am struggling to configure Splunk forwarder to get data into splunk. I am trying to get the data ( auth.log ) sent across from a Kali linux operating system. When I configured it in k...
hi all,
how can i send the same data from one universalforwarder to multiple universalforwarder ?
is there a way to configure this ? if yes, please tell me the process.
Is the data that is sent from a splunk UniversalForwarder to the heavy forwarder, syslog messages? If so, how do I find out which format it is using (ie: syslog-ng)
UniversalForwarder installed on a Windows server using all default settings. Where can I find the stanza that has the types of events it is logging so that I can validate it received th
...2 box. I have configured the indexer to listen on port 9997 and it reports it is properly doing so when I run splunk display listen . I have theforwarder pointed to the indexer on that same port b...
HI I have a web UI connection into the Heavy Forwarder over port 8000. Is there a way I can view a list of universalforwarders that are sending to this Heavy forwarder?