Hi,
Anyone tried splunk's universal forwarder to forward from 1 host-only guest to another host-only guest?
I wanted to setup a lab for some malware analysis with sysmon and also wanted to block internet access to the 2 guests.
I managed to see the active forward-server list, and also allowed the guests' ip and ports in their respective Windows firewall but install can't get data in. Both guest can ping each other.
Pls help.