Skip to main content

How to Configue input.conf in Splunk Forwader

vi /opt/splunkforwarder/etc/system/local/inputs.conf

[default]
host = prod-admin-desi
[monitor:///opt/nohup.out]
index = desi
sourcetype = desitype


/opt/splunkforwarder/bin/splunk restart

Comments