I installed the Free Version of Splunk and the Universal Forwarder. Under 'Add Data' i.e. Data Input there is an icon called forward (data from Splunk Forwarder). When I click on it, I get a message which says 'This feature is not available with your installed set of licenses. ' I am using the free version on my desktop so I can model a configuration before setting up in a corporate instance of Splunk. From what I can glean from the Splunk documentation, I should be able to setup the input on the free version of Splunk to accept data from a Universal Forwarder.
↧