Server A ---> Universal forwarder which has the logs deployed.
Server B ----> Splunk installed which is free version 6.6.3
Now, we are just testing the ingestion part for which we can see the data related to system logs in server A but at the same time we are unable to see the other logs (which are copy pasted here).
I mean, have copied logs from B and pasted in A. How to see the complete logs of both servers in Splunk while searching.
... View more
Able to see the system logs but cannot see the remote logs (in the same server) where the log files are installed.
My log files are installed on Server "A". I am using free splunk version 6.6.3
I can see the system files of "A" but cannot see the remote files in "A" (path remains same)
Please help!!
... View more
While ingesting the data all the logs from the server are falling into single source type. Can any one suggest me how data should be ingested so that source type are classified?
... View more