Skip to main content
  • Place orders quickly and easily
  • View orders and track your shipping status
  • Enjoy members-only rewards and discounts
  • Create and access a list of your products
  • Manage your Dell EMC sites, products, and product-level contacts using Company Administration.

Dell Trusted Device Installation and Administrator Guide v5.5

Configure to forward data to a SIEM solution

SIEM solutions often require a utility to consume data sources. The Splunk universal forwarder is a lightweight forwarding solution that can be configured for use with the Event Repository during or after installation. The following example provides installation and configuration reference for the Splunk universal forwarder to push data from Event Repository to a Splunk SIEM instance.

Use one of the following articles to install a universal forwarder based on the environment in which your Event Repository is installed:

After installation, see this Splunk article to configure the universal forwarder for use with the Event Repository.

After Docker is installed and prerequisites are configured, go to Run the Event Repository.


Rate this content

Accurate
Useful
Easy to understand
Was this article helpful?
0/3000 characters
  Please provide ratings (1-5 stars).
  Please provide ratings (1-5 stars).
  Please provide ratings (1-5 stars).
  Please select whether the article was helpful or not.
  Comments cannot contain these special characters: <>()\