I have an application which send event to HTTP event collector and writes a backup log to disk.
Can I somehow configure Splunk to index a log file in case HTTP endpoint will be unavailable? How could I deduplicate the events?
↧