Hi,
My log files are stored an a machine. There is no way I can tell this machine to send them somewhere. I must manually go into some directories and pull them all out.
Can Splunk do that for me?
Thanks
When you do a "pull" for data instead of a "push", you have to write some glue. You need a Universal Forwarder as a way-station and then you write a script to go to the source machine and pull the data to the UF. You then use traditional means to forward from there, being careful to use the original host for field host
(instead of the UF's value).