All Apps and Add-ons

Imported logs not showing

appmandan
Path Finder

I have set up an FTP server on my splunk indexer so that our AS400 and FTP over log files. I have set up under "Files & Directories" in Splunk Manager a rule to continuously collect from the the same folder as the AS400 is FTPing the log file in. I'm not getting the log messages into Splunk or Splunk for AS/400. I have set the sourcetype to iseries and also tried dspjrn:5 and have verified the destination index is iseries. I'm still not able to pull in the logs. Does the log file itself need a specific name? The filename I'm trying to pull in is jern.jern. Any ideas?

Thanks

0 Karma
1 Solution

appmandan
Path Finder

This was a formatting error on the AS/400 logs before they were sent over

View solution in original post

appmandan
Path Finder

This was a formatting error on the AS/400 logs before they were sent over

appmandan
Path Finder

I went to Splunk Manager from the AS/400 app.

0 Karma

gnovak
Builder

Did you put the inputs into the correct app? What app were you in when you went to Manager and added the inputs?

0 Karma
Get Updates on the Splunk Community!

Webinar Recap | Revolutionizing IT Operations: The Transformative Power of AI and ML ...

The Transformative Power of AI and ML in Enhancing Observability   In the realm of IT operations, the ...

.conf24 | Registration Open!

Hello, hello! I come bearing good news: Registration for .conf24 is now open!   conf is Splunk’s rad annual ...

ICYMI - Check out the latest releases of Splunk Edge Processor

Splunk is pleased to announce the latest enhancements to Splunk Edge Processor.  HEC Receiver authorization ...