Monitoring a file from a PC
Last updated
Last updated
C:\Program Files\SplunkUniversalForwarder\etc\apps\SplunkUniversalForwarder\local\input.config
If in the installer you have it monitoring the event viewer alerts the file should contain
To monitor the file location add this to the above file
[monitor://C:\Users\j.hollon\Desktop\moniterMe]
disabled = false
index = <name me>
sourcetype = <anything>
recursive = true
C:\Program Files\SplunkUniversalForwarder\var\log\splunk\splunkd.log