hi
universalforwarder receives and send the syslog data to do?
If possible, how do?
Yes, it is possible. You need to configure your UF to listen on a network port and receive syslog data. You can then forward the data to an indexer where it'll be written to disk.
The instructions for this can be found in the documentation here:
http://docs.splunk.com/Documentation/Splunk/latest/Deploy/Setupforwardingandreceiving
Yes, it is possible. You need to configure your UF to listen on a network port and receive syslog data. You can then forward the data to an indexer where it'll be written to disk.
The instructions for this can be found in the documentation here:
http://docs.splunk.com/Documentation/Splunk/latest/Deploy/Setupforwardingandreceiving
Thank you. I will try it