Hello Splunkers,
I have a quick question, is there aSplunk command to list all receiving port enableona specific instance ? I know you can check that from the GUI under "Settings/F...
Hi all;
I'm installing a universal forwarder on my Linux and Windows machines. After that, I'm starting to get the data with splunkadd monitor /path/to/logfile.log and I see all of my data u...
After building a deployment and a heavy forwarder onone server we seem to be having issues when we point the universal forwarders to the heavy forwarder. We are new to Splunk 6.3.1 and are not s...
I did have a previous post - "How to get search head cluster members to forward internal data to indexer cluster? - but don't think it is working correctly - yet.
I am a bit confused by one item i...
...elnet at port9997 from UniversalForwarder1 to Indexer1.
Splunkd logs:
Logs are good, no errors and whatsoever. Indexing OS logs from TA_nix_add-on.
UniversalForwarder1 to forward logs to I...
Hi all.
We are using SplunkEnterprise version of 6.1.3.
Is there any way to guarantee my Forwarder collecting all data?
Please recommend any tools or ways. Thanks.
My company purchased an enterprise license and we got it working onone domain. We want to consolidate logs from another domain onto a machine in the first domain. I tried to pull the logs d...
...ctivity and throughput. If you turn on forwarder monitoring, SplunkEnterpriseenables a scheduled search named "DMC Forwarder - Build Asset Table" that relies on internal network input m...