B1: Log in to Splunk and select Setting > Data inputs.
B2: Scroll down and select the agent method you need. Here I choose TCP to push the log back. Click + Add new. You will be redirected to another page.
B3: Enter the port so you will push the log to splunk here I will enter 500 because the port I need to upload is 500. Then Next.
B4: Click select select the source you need to search here, I choose cisco:syslog because I need the source is syslog. Then Next.
B5: Click Next to continue.
B6: Click Start and you have successfully installed the agent with port 500.
So we have successfully configured the agent on splunk. Now you can create your own agent.
Thank you for viewing this article.
Post a Comment
Post a Comment