This TA for Unix (TA-unix) is a fork of Splunk Add-on for Unix and Linux (https://splunkbase.splunk.com/app/833). It adds support for Arch & Debian Linux. It also fixes and adds support for MacOS.
* Add docker.sh and docker_metric.sh for collecting docker events/metrics * Add helper script to extra/ to run the TA commands on systems without a Splunk forwarder. The commands can be sent to a syslog server. This script is useful for systems with small or read-only filesystems that cannot support a Universal Forwarder. * Add syslog_inputs_nix_ta app to extra/ for ingesting the data from syslog |
||
---|---|---|
appserver/static | ||
bin | ||
default | ||
docs | ||
extra | ||
LICENSES | ||
lookups | ||
metadata | ||
README | ||
static | ||
app.manifest | ||
Makefile | ||
README.txt | ||
THIRDPARTY | ||
VERSION |
Technical Add-on for Unix and Linux Copyright (C) 2025 Michael Erdely All Rights Reserved. Copyright (C) 2024 Splunk Inc. All Rights Reserved. For documentation, see: https://git.erdelynet.com/mike/TA-unix/src/branch/main/docs/ReleaseNotes.md For documentation on Splunk's Add-on for Unix and Linux (which applies to this TA too), see: https://docs.splunk.com/Documentation/AddOns/released/UnixLinux/