Hello
i have been struggling to get some logs from a machine on a non-windows platform.
Would like to know if it is possible to ftp into such a machine, provide username and password for authentication, and the path of the logs that need to be monitored, with keywords to look out for?
Not with out of the box Splunk functionality. Splunk does not have an FTP client built into it. If FTP is your only option (a forwarder would be vastly superior) you might try something like WebDrive.
thanks, i had a look at WebDrive, but it seems to be available only for Windows or Mac...
You would probably be better off using the Universal Forwarder to forward the logs to your indexer. As FTP is a File Transfer Protocol, the application wouldn't be able to tail your log file.
I suggest you read http://docs.splunk.com/Documentation/Splunk/4.2/Data/Usingforwardingagents
Brian
i found the site for download of the universal forwarder, just have to understand which tarball to download..
thanks, i am trying to download a tarball for the splunk forwarder, but cannot seem to find it on the splunk site. The OS in question is QNX, so i think i will have to download the tarball for linux...