Upgrade the Splunk Add-on for Apache Web Server
No special steps are required to upgrade the Splunk Add-on for Apache Web Server from version 2.0.0. to version 2.1.0. Follow the steps in the Install the Splunk Add-on for Apache Web Server topic in this manual.
Update the apache log formatting configuration to generate logs in the new format by following the Configure log formatting on the Apache Web Server using httpd.conf topic in this manual.
Based on your configuration, perform changes in the Configure monitor inputs for the Splunk Add-on for Apache Web Server topic in this manual.
See Configure enhanced log formatting on the Apache Web Server using httpd.conf for more information.
- Splunk best practice is to use the enhanced Key-Value pair or JSON format. The sourcetypes for apache access logs when using the Key-value pair will be
apache:access:kv
The sourcetype for apache access logs when using the Json format will beapache:access:json
- For the default out-of-the-box format, the sourcetype for apache access logs will be
apache:access:combined
Install the Splunk Add-on for Apache Web Server | Configure enhanced log formatting on the Apache Web Server using httpd.conf |
This documentation applies to the following versions of Splunk® Supported Add-ons: released
Feedback submitted, thanks!