Quantcast
Channel: Questions in topic: "splunk-enterprise"
Viewing all articles
Browse latest Browse all 47296

Drop Events at the source with UF

$
0
0
All, Just reading - http://blogs.splunk.com/2016/05/05/high-performance-syslogging-for-splunk-using-syslog-ng-part-1/?awesm=splk.it_x0t And it's mentioned that we can drop events at the source with the UF? Is this true? and how did I miss this!? is this just normal props.conf/transforms.conf config? thanks!

Viewing all articles
Browse latest Browse all 47296

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>