0

i want to take various server logs and send it to the splunk server. is that possible?

i assume it has to do something with the rysyslog.conf ... but I have no idea of how to do it?

user3597043
  • 37
  • 1
  • 1
  • 6

1 Answers1

0

Of course you can do that, this is what splunk is all about. Install the universal forwarder and configure the inputs.conf file to gather the data from your files.

http://docs.splunk.com/Documentation/Splunk/6.2.0/Forwarding/Deploymentoverview

Tom Kregenbild
  • 1,568
  • 1
  • 10
  • 11