Is it possible to configure the log directory of a Windows 4.2 unviversal fowarder?
i.e. we want to log to a directory which is not C:/Program Files/Splunk/var/log/splunk to meet our environment policies.
Hi Josh,
You may want to create a log-local.cfg file in $SPLUNK_HOME/etc/ which includes a custom path for the following log configuration setting:
appender.A1.fileName=/path/to/your/custom/file.log
For more information, the following documentation link has some useful configuration settings for your log files.
http://www.splunk.com/base/Documentation/4.2/Admin/SplunkLogFiles#log.cfg
Hi Josh,
You may want to create a log-local.cfg file in $SPLUNK_HOME/etc/ which includes a custom path for the following log configuration setting:
appender.A1.fileName=/path/to/your/custom/file.log
For more information, the following documentation link has some useful configuration settings for your log files.
http://www.splunk.com/base/Documentation/4.2/Admin/SplunkLogFiles#log.cfg