Quantcast
Channel: Questions in topic: "props.conf"
Viewing all articles
Browse latest Browse all 1485

Splunk Add-on for VMware: How to limit the logs collected by the add-on to just security related logs?

$
0
0
-We have a remote syslog server that is collecting vcenter and esxi hosts logs. -On the sylog server the data is broken as followed %HOSTNAME%/%PROGRAMNAME%.log" -We are able to collect the data using splunk_ta_esxilogs and splunk_ta_vcenter app. The problem is that its collecting too much data, and we only care about security related data. How can I collect the following logs using the Splunk Add-on for VMware plugins? Is that something I need to do in the transforms.conf and props.conf file? shell.log auth.log hostd.log

Viewing all articles
Browse latest Browse all 1485

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>