To preface i'm talking about a Windows Server with Universal Forwarder installed on it.
If i restart the SplunkForwarder Service on an active server that is generating logs, will the forwarder pick up from where it was right before the restart, or will there be a gap in time of missing events indexed?
... View more