Hi All,
I'm muddling through Splunk as I go. I'm part of a team working with it but we're all having to feel our way through a little bit blind, but we have made some progress none the less as after a little while it starts to make sense.
However I was playing with the Data Inputs and Source Types on Splunk web and now the forwarder is not passing a log file through.
I cannot determine why, I managed to track down the splunkd log on the forwarder box and it says
TailingProcessor - Parsing configuration stanza: monitor://\\mypath\mylog.log
Then no other mention of such file. The file has changed since it was last indexed so I don't know whats going on. Any help is greatly appreciated.
↧