I am using a heavy forwarder to transform splunk message into a syslog format. I would then like to the heavy forwarder to load balancing my syslog stream to several end-point. Can the heavy forwarder load balance a syslog stream to several end-points?
As far as i know heavy forwarder will not load balance syslog stream in the current version of splunk. For this you can do configuration in universal forwarder and force the auto load balancing.