All Apps and Add-ons

Splunk Add-on for CyberArk: Should I use a Heavy Forwarder or a syslog server with a Universal Forwarder with this add-on?

upgrayyyed
New Member

I'm trying to decide whether I should use a heavy forwarder or a syslog server with universal forwarder to receive data from CyberArk. Can anybody tell me which approach you're using, and how well that's working out for you?

0 Karma

shirishkamat84
Path Finder

Since the cyberark application can only log syslog data, configure syslog to send the data to a syslog receiver and using a heavy forwarder, push the logs to splunk. this is the most effective way of implementing this solution.

0 Karma
Get Updates on the Splunk Community!

Webinar Recap | Revolutionizing IT Operations: The Transformative Power of AI and ML ...

The Transformative Power of AI and ML in Enhancing Observability   In the realm of IT operations, the ...

.conf24 | Registration Open!

Hello, hello! I come bearing good news: Registration for .conf24 is now open!   conf is Splunk’s rad annual ...

ICYMI - Check out the latest releases of Splunk Edge Processor

Splunk is pleased to announce the latest enhancements to Splunk Edge Processor.  HEC Receiver authorization ...