Hi,
I have a Windows server 2003 which forwards data to Splunk instance on a Linux box. I want the file c:\Program Files(x86)\SSRPM\Service\Logging\SSRPMLog.log (which is there on the Windows forwarder) to be monitored on Splunk.
How to do this?
The way i understood it from the docs:
[monitor:c:\Program Files(x86)\SSRPM\Service\Logging\SSRPMLog.log]
I placed the above entry in
c:\Program files\Splunk\etc\system\local\inputs.conf
but its not getting indexed on the Splunk instance.
Please help.
Regards,
Abhishek
... View more