Hi
I am a new user, who downloaded splunk yesterday and learning to configure for monitoring and searching our production logs.
I have a few questions.
Is there any documentation link where I can find how to configure a splunk host to monitor log files from different hosts on the same network which are linux boxes.
I also need some documentation to configure splunk to search log files.
I have a question regarding indexing zip files. Actually the cron job will zip all the previous log files and keep the log files in the same directory.
Can we have the zip files and current log files in the same directory? Or the rotated zip files should be in different directory.
Thanks
Sameer
Thanks for the quick response.
I am able to successfully configure Splunk Search.
Start with the Getting Data In Manual. It explains how to get data from files and directories, configure event types and source types, and introduces the subject of getting data in a distributed environment.
Sameer, here's the answers to your questions: