Splunk® Supported Add-ons

Splunk Add-on for Apache Web Server

Upgrade the Splunk Add-on for Apache Web Server

No special steps are required to upgrade the Splunk Add-on for Apache Web Server from version 2.0.0. to version 2.1.0. Follow the steps in the Install the Splunk Add-on for Apache Web Server topic in this manual.

Update the apache log formatting configuration to generate logs in the new format by following the Configure log formatting on the Apache Web Server using httpd.conf topic in this manual.

Based on your configuration, perform changes in the Configure monitor inputs for the Splunk Add-on for Apache Web Server topic in this manual.


See Configure enhanced log formatting on the Apache Web Server using httpd.conf for more information.

  • Splunk best practice is to use the enhanced Key-Value pair or JSON format. The sourcetypes for apache access logs when using the Key-value pair will be apache:access:kv The sourcetype for apache access logs when using the Json format will be apache:access:json
  • For the default out-of-the-box format, the sourcetype for apache access logs will be apache:access:combined
Last modified on 15 June, 2022
Install the Splunk Add-on for Apache Web Server   Configure enhanced log formatting on the Apache Web Server using httpd.conf

This documentation applies to the following versions of Splunk® Supported Add-ons: released


Was this topic useful?







You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters