Splunk Search

Bind forwarder to particular IP

msarro
Builder

Hey everyone. I am trying to bind the forwarding service to a particular IP because one of the boxes we are using as a source is multihomed. First, is this possible? Second, how would I go about doing it? The hosts in question run on both Solaris and Linux.

Tags (1)
0 Karma

David
Splunk Employee
Splunk Employee

For binding the listening service, you should use this: http://www.splunk.com/base/Documentation/latest/Admin/BindSplunktoanIP

For controlling the path taken by the forwarding service, I believe Splunk will just use the OS level networking, so you would implement that with a static route (e.g., the linux route command).

Does that answer your question?

msarro
Builder

I'm going to have to try it out, I'll let you know! 🙂

0 Karma
Get Updates on the Splunk Community!

Extending Observability Content to Splunk Cloud

Watch Now!   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to leverage ...

More Control Over Your Monitoring Costs with Archived Metrics!

What if there was a way you could keep all the metrics data you need while saving on storage costs?This is now ...

New in Observability Cloud - Explicit Bucket Histograms

Splunk introduces native support for histograms as a metric data type within Observability Cloud with Explicit ...