What are network inputs?
What is a Splunk stream?
* An alternative way to collect ‘difficult’ inputs
What is a HTTP event collector?
How is a HEC configured?
What are the HEC global settings?
What are the HEC per-token settings?
What is SC4S?
Splunk connect for syslog
• Looks like an app, but it’s actually a container
• Preconfigured syslog receiver and a http event log