Installation steps
The Splunk universal forwarder is basically a specialized instance of Splunk Enterprise with most features disabled, and it is a separate binary, but you can follow the same process as was used for installing Splunk Enterprise in Chapter 3, Installing and Configuring Splunk, for both Linux and Windows installs.
You can download the Splunk Enterprise universal forwarder from this link: https://www.splunk.com/en_us/download/universal-forwarder.html.
Select the Windows or Linux tab, click the download button for the 64-bit version, and format as appropriate for your operating system. For Linux, when installing Splunk Enterprise, you can download and save the rpm or other binary, but you can also copy the wget command to install ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access