What are the minimum hardware requirements for Splunk Universal Forwarder in...
Minimum requirements for Splunk Universal Forwarder in 32-bit OS If 2x six-core, 2+ GHz CPU, 12GB RAM, RAID 0 or 1+0, with a 64-bit OS installed, is the system requirements different if the server is...
View ArticleWhat are the minimum server requirements to install the Universal Forwarder...
Hi, we are having trouble installing Universal Forwarder (32-bit) to a server that has system specifications of: OS: Windows Server 2008 v6.0 System Model: Virtual Machine CPU: Intel Xeon 3.47GHz...
View ArticleCan TA-connectivity add-on be run on a universal forwarder?
How can I run the TA-connectivity add-on? It seems that Python is not included with the universal forwarder. I am attempting to use on on RHEL 6 which has its own Python. How do I use TA-connectivity...
View ArticleHow to determine which inputs are configured in my Splunk architecture?
Hello Team, I have recently joined a team and the old Splunk admin has left. I am messed up determining the number of Universal Forwarders, Direct data pull input and the number of ways data is brought...
View ArticleWhy is the Universal Forwarder (Windows) not sending data with a timestamp to...
**The forwarder sends data to indexer if a line does not starts with a date time.** e.g **12/13/2016 12:45:77.907 -0500 Some content** The above line fails **12/13/2016 Some content** Above line works...
View ArticleCan a RHEL Universal Forwarder be installed on a RHEV host?
I have a Red-hat Enterprise Virtualization Hosts that I would like to put the Splunk Universal Forwarder on to collect logs. Is there any reason that I should not do this?
View ArticleWindows セキュリティイベントログのメッセージフィールドが1行目しか表示されない
Windows OSにインストールされた Universal Forwarder から、Linux OSにインストールされた Indexer へ Windows セキュリティ・イベントログを転送しました。インデックスされたデータを検索したところ、メッセージフィールドの内容が1行目しか表示されません。全ての内容をインデックスするためにはどうしたら良いのでしょうか。
View ArticleWhy I am receiving this message "There are currently no forwarders configured...
We have the application running in remote servers using weblogic. We use the log 4j configuration. Have installed Splunk in my system and universal forwarder as well in my local system. But why do I...
View ArticleUniversal Forwarder 6.5 on Windows Server 2008 32-bit?
Can I install Universal Forwarder 6.5 on Windows Server 32-bit by using the Windows 8, 8.1, and 10 installer? If not, what is the latest version of Universal Forwarder I can use?
View ArticleHow to install and configure a universal forwarder on servers that are...
Hello i was looking at Splunk docs regarding how to install Splunk forwarder and configure inputs to forward logs from Docker container. Unluckily, I could not find any thing. Can any one help me in...
View ArticleHow to blacklist specific accounts in Windows security log event 4663?
I've seen several posts here, but none that really have a concrete answer on this. I'm trying to blacklist certain accounts in my inputs.conf on the Splunk universal forwarder for Windows event id 4663...
View ArticleHow to configure a universal forwarder to be aware of a WebLogic Windows server?
Hi, I'm new to Splunk and learn as I go. I set up the universal forwarder on the Oracle WebLogic server, and on the Splunk Web front end, I can see the perfmon counters for that server. On the Splunk...
View ArticleWhy am unable to uninstall Splunk universal forwarder?
When i try to uninstall Splunk universal forwarder from remove programs, i get this following error splunk the minimum operating system versions required to support this installation of...
View ArticleWhere is the universal forwarder config
Hi, Selecting Windows IIS logs (C:\inetpub\logs\LogFiles\W3SVC\) as event source during the installation of UF (splunkforwarder-6.5.1-f74036626f0c-x64-release.msi) resulted in data/events being...
View ArticleWhere are configuration details stored during the Universal Forwarder...
Hi, Selecting Windows IIS logs (C:\inetpub\logs\LogFiles\W3SVC\) as event source during the installation of Universal Forwarder (splunkforwarder-6.5.1-f74036626f0c-x64-release.msi) resulted in...
View ArticleIs there a way to run a script residing in a bin folder of an app located on...
Is there a way to run a script residing in one of the /bin folders of an app on a universal forwarder via a rest call with some parameters? Security wise it would need to be only files in an app and...
View ArticleUniversal forwarder losing data
I´d set up the universal forwarder to send my logs to another server and it´s working, but it´s losing part of some lines in the proccess, as shown in the image attached. Does anyone knows how to solve...
View ArticleWhy is the universal forwarder not forwarding some lines in my logs?
I'd set up the universal forwarder to send my logs to another server and it's working, but it's losing part of some lines in the process, as shown in the image attached. Does anyone knows how to solve...
View ArticleWhy is Splunk Universal Forwarder on AWS not showing up in the list of...
I am new to Splunk and I am trying to test Splunk Cloud with my AWS instance. I have a forwarder built in AWS. It does not show up in the forwarders of my cloud instance It installs fine according to...
View ArticleIn order customize my Docker image, how should I download and install Splunk...
I am trying to customize my Docker image (a Cassandra image) so it also has Splunk Forwarder with Cassandra add-on. Can you please guide how to do so? main issue is downloading headless (both add-on...
View Article