18.1 Configuring Splunk for Integration

Secure Configuration ManagerSplunk must be able to receive the data coming from .

  1. Log in to Splunk.

  2. For TCP/UDP, create an instance for a TCP or UDP listener with syslog source type.

  3. Specify the PortSecure Configuration Manager you want to use to receive data from .

  4. Specify values for Source name override and Only accept connection from, as needed.

  5. To verify the data is correct, check whether the TCP Data inputs table lists your new syslog source.