We have a clustered environment, we have the Splunk Add On for Infoblox setup and configuered. We are getting the DNS Captures and the DHCP and DNS data from the logs over UDP port. This seems to be working fine. The other piece of this though is the actual syslog data. We are also trying to send that over UDP port, and we are not getting any of the syslog sourcetype data in splunk.
Is there something special we have to do with splunk or infoblox?
... View more