Splunk Universal Forwarder Tutorial - How to send Syslog to Splunk

  Рет қаралды 8,753

Lame Creations

Lame Creations

Жыл бұрын

We will discuss how syslog and the Splunk universal forwarder are similar and different and how to utilize both. We will discuss how to ingest syslog into Splunk and how it can be done with a Universal Forwarder without the problems that syslog can generate.
Join this channel to get access to early release of videos and exclusive training videos that will help make you L.A.M.E. ninja: / @lamecreations_guides
Visit our discord channel to post questions and suggestions for what you want to learn. / discord
The latest L.A.M.E. Splunk apps are available at
www.github.com/lameCreations

Пікірлер: 11
@stringtech9538
@stringtech9538 8 ай бұрын
Thank you. I've been told by others and read that a universal forwarder was the way to send data to Splunk. However, until now I couldn't find anything articulating why you'd go to the trouble. Your breakdown and the extra details were helpful.
@lamecreations_guides
@lamecreations_guides 8 ай бұрын
Glad it helped
@FindAllHere
@FindAllHere 10 ай бұрын
Please keep making more videos there are super useful! Specially the ES training
@lamecreations_guides
@lamecreations_guides 10 ай бұрын
Plenty more to come on the ES training. I am hoping to release the rest of the videos over the next week or two. Glad they have been of value.
@Scott-zc3iy
@Scott-zc3iy Жыл бұрын
Great video thanks! Now I need to figure out how to build a syslog server to capture all of my syslogs from vCenter...
@healthymealthy775
@healthymealthy775 9 ай бұрын
Thanks for doing this!!
@lamecreations_guides
@lamecreations_guides 9 ай бұрын
No problem!!
@user-oq9os6qj6p
@user-oq9os6qj6p Жыл бұрын
I appreciate this videos.Quick one:When you build an app,does it matter if you create your conf files in the default or local folder?I noticed you had the inputs conf in both. Thanks.
@lamecreations_guides
@lamecreations_guides Жыл бұрын
As a general rule when you create a custom app, you conf settings should be in default. When you are the user of an app and are making changes locally, use local (this means your changes won't be undone when a new version of the app is released on splunkbase) I have a video that goes into much further detail on this topic kzfaq.info/get/bejne/oLZ2YLWC3J-aZYE.html
@newbyte-vk1zk
@newbyte-vk1zk Жыл бұрын
Nwanem you de learn splunk too. Nice. Holla if you have any questions. Make we learn together.
@dvn8ter
@dvn8ter 9 ай бұрын
⭐️⭐️⭐️⭐️⭐️
Splunk Connect for Syslog: Ingest Security Data
32:15
Splunk
Рет қаралды 3,3 М.
10 - Log-Server (rsyslog)
32:11
Write your own Operating System
Рет қаралды 3,9 М.
아이스크림으로 체감되는 요즘 물가
00:16
진영민yeongmin
Рет қаралды 63 МЛН
Mom's Unique Approach to Teaching Kids Hygiene #shorts
00:16
Fabiosa Stories
Рет қаралды 33 МЛН
Llegó al techo 😱
00:37
Juan De Dios Pantoja
Рет қаралды 56 МЛН
Sysmon Splunk Integration
16:39
Cyber Pro
Рет қаралды 1,4 М.
Splunk Dashboard creation and analyzing the data.
12:10
Techknowledge
Рет қаралды 14 М.
What's the BEST home server operating system?
17:35
Christian Lempa
Рет қаралды 626 М.
you need to learn Ansible RIGHT NOW!! (Linux Automation)
21:21
NetworkChuck
Рет қаралды 859 М.
How to install Splunk Universal Forwarder | Splunk Installation | Log Server
23:05
Muhammad Shehzad Arshad
Рет қаралды 14 М.
아이스크림으로 체감되는 요즘 물가
00:16
진영민yeongmin
Рет қаралды 63 МЛН