Re: dnstap to Splunk

2022-05-20 Thread Fred Morris
If you need something for POC / smoke: https://github.com/m3047/shodohflo/blob/master/examples/dnstap2json.py Assuming you can figure out how to get Splunk to consume log oriented json over UDP... -- Fred Morris, internet plumber -- Visit https://lists.isc.org/mailman/listinfo/bind-user

dnstap to Splunk

2022-05-20 Thread Crist Clark
Anyone out there trying to dump dnstap data into Splunk in real-time or near-real-time? I was frankly kind of surprised when I searched the Splunk docs site and got "No results. We did not find any pages on Splunk.com that matched dnstap." Googling didn't fare a whole lot better. But this must b