Forwarding logs to Splunk

You can run Transaction Analysis Workbench batch jobs that stream log data in JSON Lines format to a TCP data input on a remote Splunk indexer.

Figure 1. Forwarding logs to Splunk: streaming JSON Lines over TCP
Figure that shows Transaction Analysis Workbench converting a log to JSON Lines format, and then streaming the JSON Lines over a network to a Splunk TCP data input on a remote system.