O/s - Centos 6
Splunk Server Setup -
Package - splunk-4.3.2-123586-linux-2.6-x86_64.rpm
# rpm -ivh splunk-4.3.2-123586-linux-2.6-x86_64.rpm
# /opt/splunk/bin/splunk start
# netstat -tunlp | grep 8090
Splunk Client (Forwarder) Setup -
Package - splunkforwarder-4.2.4-110225-linux-2.6-x86_64.rpm
# rpm -ivh splunkforwarder-4.2.4-110225-linux-2.6-x86_64.rpm
# /opt/splunkforwarder/bin/splunk start
# ps aux| grep splunk
# cd /opt/splunkforwarder/
# /opt/splunkforwarder/bin/splunk enable boot-start
Adding Source -
# /opt/splunkforwarder/bin/splunk add monitor </path/logfile1>
# /opt/splunkforwarder/bin/splunk add monitor </path/logfile2>
Contacting Splunk Server -
# /opt/splunkforwarder/bin/splunk add <serverip>:8090
# /opt/splunkforwarder/bin/splunk add forward-server <serverip>:8090
No comments:
Post a Comment