Hello, I need to forwards logs from AS400 into splunk instance. The best option to do that is through the third-party agent, as I investigated on internet and other questions in splunkbase. My question is: Do you have any experiences with third-party agent running on AS400 and forwarding data into splunk instance? And can you investigate the incoming events in Enterprise Security app since it's CEF structured?
(I found few of agents such as Enforcive Enterprise Security Suite, iSecurity SYSLOG (SEA), Powertech SIEM Agent for IBM i, PowerSC Syslog Reporting Manager)
Thank you for answers or recommends for tested agents.
... View more