Posted 3 years ago
the data gets via syslog into splunk. As Fan wrote, you have to configure your splunk server as syslog server in your Hivemanager, assign it to a policy and there goes data into your splunk.
In splunk itself you choose the 'app' Search&Reporting and e.g. click on 'Data Summary' where you can see all the hosts that are sending logs to your splunk. Another possibility is to type 'host=10.*' (where 10.* is your AP management network) into the search bar on top of the splunk page... There is also a great help appearing if you type something.
J. Goodnough, Champ
Powered by Get Satisfaction