Skip to content

Upgrade the Splunk Add-on for Apache Web Server

No special steps are required to upgrade the Splunk Add-on for Apache Web Server from version 2.0.0. to version 2.1.0. Follow the steps in the Install the Splunk Add-on for Apache Web Server topic in this manual.

Update the apache log formatting configuration to generate logs in the new format by following the Configure log formatting on the Apache Web Server using httpd.conf topic in this manual.

Based on your configuration, perform changes in the Configure monitor inputs for the Splunk Add-on for Apache Web Server topic in this manual.

See Configure enhanced log formatting on the Apache Web Server using httpd.conf for more information.

  • Splunk best practice is to use the enhanced Key-Value pair or JSON format. The sourcetypes for apache access logs when using the Key-value pair are apache:access:kv The sourcetype for apache access logs when using the Json format are apache:access:json
  • For the default out-of-the-box format, the sourcetype for apache access logs are apache:access:combined