I have used syncsort in Mainframe but don't know how splunk would speak to syncsort running in zOS.
Is there any architecture diagram or Manual which can help me to understand ? On Jun 8, 2017 10:24 PM, "Pew, Curtis G" <curtis....@austin.utexas.edu> wrote: > On Jun 8, 2017, at 11:03 AM, Jake Anderson <justmainfra...@gmail.com< > mailto:justmainfra...@gmail.com>> wrote: > > Is there anybody in the group who have used syncsort with Splunk ? > > We forward our OPERLOG to Splunk, although we don’t use Syncsort’s > forwarder. (I wrote my own; it wasn’t that hard.) > > Our main motivation was to show that the mainframe group are “team > players” since everyone else around here was investing in Splunk, but it is > actually quite useful. We’ve set up a few regular reports of classes of > ABENDs or other errors we like to keep track of, and it allows us to go > back and do searches for messages when an issue arises that we hadn’t > foreseen. > > > ---------------------------------------------------------------------- > For IBM-MAIN subscribe / signoff / archive access instructions, > send email to lists...@listserv.ua.edu with the message: INFO IBM-MAIN > ---------------------------------------------------------------------- For IBM-MAIN subscribe / signoff / archive access instructions, send email to lists...@listserv.ua.edu with the message: INFO IBM-MAIN