Getting Data In

How to index logs in Splunk 6.4 from a Box folder?

vasanthmss
Motivator

Hi Splunker,

Looking forward to onboarding logs from a Box folder. Not the Box access logs, it's a custom log file uploaded in box.

I can think of the below options,

  1. sync the box folder in the heavy forwarder and monitor the files. - Box provides ftp not sftp.
  2. write a script to download the files and add oneshot. - like curl .. this required to provide the password.

FYI : Linux environment with Splunk 6.4

My Questions are,

  1. which of the above options is good? I can see both are not suites security policy.
  2. is there any other better options?

Thanks,
V

V
1 Solution

jtacy
Builder

Not that I'm a big fan of FTP for new projects, but Box supports FTPS and that's probably the way I would go. You can find the connection information here:
https://community.box.com/t5/Managing-Your-Content/Using-Box-with-FTP/ta-p/312

View solution in original post

0 Karma

jtacy
Builder

Not that I'm a big fan of FTP for new projects, but Box supports FTPS and that's probably the way I would go. You can find the connection information here:
https://community.box.com/t5/Managing-Your-Content/Using-Box-with-FTP/ta-p/312

0 Karma
Get Updates on the Splunk Community!

Index This | I’m short for "configuration file.” What am I?

May 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with a Special ...

New Articles from Academic Learning Partners, Help Expand Lantern’s Use Case Library, ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Your Guide to SPL2 at .conf24!

So, you’re headed to .conf24? You’re in for a good time. Las Vegas weather is just *chef’s kiss* beautiful in ...