Splunk
The splunk input plugin handles Splunk HTTP HEC requests.
Configuration Parameters
Getting Started
In order to start performing the checks, you can run the plugin from the command line or through the configuration file.
How to set tag
The tag for the Splunk input plugin is set by adding the tag to the end of the request URL by default. This tag is then used to route the event through the system. The default behavior of the splunk input sets the tags for the following endpoints:
/services/collector
/services/collector/event
/services/collector/raw
The requests for these endpoints are interpreted as services_collector
, services_collector_event
, and services_collector_raw
.
If you want to use the other tags for multiple instantiating input splunk plugin, you have to specify tag
property on the each of splunk plugin configurations to prevent collisions of data pipeline.
Command Line
From the command line you can configure Fluent Bit to handle HTTP HEC requests with the following options:
Configuration File
In your main configuration file append the following Input & Output sections:
Last updated