Ubuntu configuration for connection from AWS to Splunk











 After we get to Ubuntu throught SSH (putty we will update , upgrade Ubuntu





we are confirming we got Splunk


we will check the files and resources available



we need to mount it first and create a volume


this is where you got splunk instruction to download
Follow tgz file

we are creating a VG volume in Ubuntu



45 g of space is reasonable


ping your machine..it's ok

























                                                                        checking the files available and creating IP tables

                                                                          we will put the ip provided in AWS

                                                           we are finally in, so now we will perform some basic search in logs




                                                                                                     We can do our first search: index internal logs
Internal logs




                                                                                                                  Audit logs





this process to login in splunk is done









Ubuntu configuration for connection from AWS to Splunk Ubuntu configuration for connection from AWS to Splunk Reviewed by ohhhvictor on May 07, 2020 Rating: 5

No comments:

 photo imagen120.jpg
Theme images by 5ugarless. Powered by Blogger.