What is a splunk forwarder and what are types of splunk forwarder?
Answer / Jatin Girdhar
"A Splunk Forwarder is a lightweight agent that collects machine-generated data (such as logs) from different sources, compresses it, and forwards it to a Splunk Indexer or Heavy Forwarder for indexing. There are two types of Splunk Forwarders: Universal Forwarder and Light Forwarder.".
| Is This Answer Correct ? | 0 Yes | 0 No |
What is the main difference between source & source type?
Explain how splunk works?
What is the main difference between sort + and sort -?
Why should we use splunk alert?
Name the command which is used to the “filtering results” category?
What is the function of alert manager?
What is the Command to change splunkweb port to 9000 via CLI?
How would you handle/trou/able shoot splunk license violation warning error?
Explain file precedence in splunk.
How can we extract fields?
Briefly explain the splunk architecture?
What is the difference between index time and search time?