Hi,
I am sending emails through email client, say for example mailgun. It has logs in the mailgun which would store my email logs only for 30 days. I would like to forward those logs to Splunk. Is it possible, and if so, how?
Thanks.
Good question. I would also like to do this.
Hello
i would like to know which email client logs you are trying to forward??
You may like this thread and vote for it.
The log that is displayed in mailgun.
I think it is retrievable by api:
https://documentation.mailgun.com/api-events.html#events
So i would have to build a script to retreive the data and store it into a logfile. And ofcourse some logrotation.
After that, adding the file to Splunk and fieldextraction should be no problem.
Thanks for your reply
i would also look into it and keep posted