All Apps and Add-ons

Problems in getting data from RabbitMQ into Splunk using AMQP

lucasfbeinjamin
Path Finder

My current status is: I got the log data successfully being written to my RabbitMQ queues, but I do not know how to configure the pull settings in the "splunk", I do not know if this is right to say so, to receive this in AMQP Modular Input.

I read about a configuration file for the connection, what folder do I put this configuration file and what is the name of this configuration file that I should create?

Current environment: My current environment is splunk on one machine, and my forwarder installed on another machine, do I need to install something from AMQP on the machine that is my forwarder? Or only on the machine that splunk is installed? both have a connection, I've done all the tests.

Forgive me, but I'm still a beginner, but I'm reading a lot.

Thanks for any help guys.

0 Karma

cyber_castle
Path Finder

whether you were able to fix the same? I am having the same issue.

0 Karma
Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...