Forward data to third-party systems
Splunk software can forward data to third-party systems as follows:
- Through a plain TCP socket
- Packaged in a standard syslog
To forward data to third-party systems, you configure heavy forwarders by editing the
transforms.conf files. This export method is similar to routing your data to other Splunk deployments. You can filter the data by host, source, or source type.
See Forward data to third party systems in the Forwarding Data manual.
Export data using the dump command
About writing custom search commands
This documentation applies to the following versions of Splunk® Enterprise: 6.4.0, 6.4.1, 6.4.2, 6.4.3, 6.4.4, 6.4.5, 6.4.6, 6.4.7, 6.4.8, 6.4.9, 6.5.0, 6.5.1, 6.5.1612 (Splunk Cloud only), 6.5.2, 6.5.3, 6.5.4, 6.5.5, 6.5.6, 6.6.0, 6.6.1, 6.6.2, 6.6.3, 6.6.4, 7.0.0