Dell PowerStore 3200T Using the Common Event Enabler 8.x on Linux Platforms - Page 11
EndPoint, SplunkHEC Index, Host server, token, Indexing configuration example
View all Dell PowerStore 3200T manuals
Add to My Manuals
Save this manual to your list of manuals |
Page 11 highlights
12228 c. For each Indexing vendor that you are using, edit the: ● EndPoint option with the software name (SplunkHEC), HTTPS address of the computer where the Splunk consumer application is installed, and port number of 8088. You can designate multiple HTTPS addresses by separating them with semicolons (;). ● SplunkHEC Index option with a user-defined name for the index. Only one index value is allowed. ● Host server option with the IP address of the computer where the Splunk consumer application is installed. ● token option with the GUID generated by Splunk Enterprise or Splunk Cloud application for the index. NOTE: If the Splunk consumer application is installed on multiple computers, you must create multiple lines, one for each computer. Indexing configuration example: This example shows a configuration file that is enabled for an Indexing configuration. 0 0 0 60 100 1 SplunkHEC@https://10.3.4.20:8088 60 100 ceeindex 100 0 10 60 20 0 12228 3. In the information source software that sends events to CEE, ensure that the HttpPort option is set to the default port number of 12228. Configuring the Event Publishing Agent 11