Install the Splunk Add-on for vCenter Logs
The Splunk Add-on for vCenter logs receives the vCenter logs data via syslog/universal forwarder installed on the vCenter server and the data is ingested in the vmware-vclog index. The definition for the required index is present in the Splunk Add-on for VMware Metrics Indexes package or the Splunk Add-on for VMware Indexes package. If you are using Splunk Add-On for VMware Metrics you have to install the indexes package by following the Install and Configure Splunk Add-on for VMware Metrics Indexes steps. If you are using Splunk Add-On for VMware you have to install the indexes package by following the Install and Configure Splunk Add-on for VMware Indexes steps.
Install the Splunk Add-on for vCenter Logs to the environment tier to collect data.
Install Splunk Add-on for vCenter Logs to a cloud environment
- Log in to your search head.
- On the Splunk Web home page, select the gear icon next to Apps.
- Select Browse More Apps.
- Search for the "Splunk Add-on for vCenteri logs" and select Install.
- Enter your Splunk.com login credentials.
- Read and accept the terms and conditions, and select Login and Download.
- Go to Apps > Manage Apps to review the installed app on the Apps page.
The vmware-vclog index, which is part of the SA-VMWIndex-inframon, package is required. If you are using Splunk Add-On for VMware Metrics you have to install the Splunk Add-on for VMware Metrics Indexes package. If you are using Splunk Add-On for VMware you have to Install the Add-on for VMware Indexes package.
Set up your system for the Splunk Add-on for vCenter Logs | Configure the Splunk Add-on for vCenter logs to collect vCenter log data |
This documentation applies to the following versions of Splunk® Supported Add-ons: released
Feedback submitted, thanks!