I can't understand why things need to be so complicated. All I need is to parse one more single file. I've searched many times but it doesn't have any modsecurity related logs under Splunk.
I've even modify modsecurity to write its logs under messages file which is parsed fine from Splunk and still showing everything apart from the modsecurity logs.
It needs to be done something into Splunk but have no clue what to parse that.
I've also installed modsecurity app but can't find/parse anything.
Is there a howto how to parse an extra file into Splunk?
Thanks
... View more