For demo purposes, I plan to set up a single box (all-in-one) instance of Splunk and would like to configure Splunk such that all inputs that splunk ingests are stored in a local log file.
Is there an option in Splunk to log all of its raw input? Or to forward it to another host:port?
Or if not, what would be the most straightforward programmatic direction for this?
Thanks!