An issue is the Receive Data from forwarder doesn't appear to actually work. It says there are no forwarders configured when there are because data is coming in from file's being ingested.
Not only is the documentation bad, it just doesn't work.
It feels like Splunk Light is a second-class citizen. It is hard to sell this to clients when it is almost impossible to set up without doing everything in the back-end with file configurations.
... View more