This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Forwarding InTrust security event log to Splunk

Quest InTrust version: 11.3.0

Hi,

We would like to forward our Doman Controller security event logs to Splunk. According to the documentation, it states the following:

Caution: For the sake of speed, the Splunk forwarding component of InTrust uses the UDP protocol, so successful delivery of forwarded data is not guaranteed. "UDP is not desirable as a transport because, among other reasons, it does not guarantee delivery of network packets." 

Is it possible to use the TCP protocol?

Regards,

David