Splunk Universal Forwarder Package
It would be nice to have a Splunk Universal Forwarder package so we can send logs and other monitor capable files e.g. Snort Unified2 logs directly to a Splunk cloud or local instance. There have been efforts to get Splunk and stanzas on the box but it's a little inconvenient. Users should be able to customize input and output stanza's with the package installed and running and the ability to configure where the splunk instance is and replace the SSL certificate where possible.