Configure data collection on your Splunk Enterprise instance
To get data from your data source into your Splunk Enterprise instance, configure a receiver and a forwarder. The receiver is your Splunk Enterprise instance. You install the forwarder on your data host to send data to the receiver.
Enable a receiver using Splunk Web
- Log into the receiver as an Admin.
- Click Settings, then Forwarding and receiving.
- For Configure receiving, click Add new.
- You can use the
netstat
tool to determine what ports are available on your system. Make sure that Splunk Web or splunkd is not using the port you select. - Specify the TCP port you want to make the receiving port.
- Click Save. The Splunk software begins to receive incoming data on the port you specified.
- Restart the Splunk software.
This documentation applies to the following versions of Splunk® Enterprise: 7.3.0, 7.3.1
Feedback submitted, thanks!