Quantcast
Channel: Questions in topic: "universal-forwarder"
Viewing all articles
Browse latest Browse all 1551

Log data of a particular sourcetype from one of the forwarder is missing in splunk

$
0
0
Hi All, In UF installed server ,we have monitor stanza to read the .log file from a particular source named it as one of the sourcetype. I used to get the log feed upto 7 days . But suddenly it stopped and not able to see any log feed from that particular sourcetype only But I am getting the different types of log files nearly from 8 sources from the same UF installed server to indexer I had rebooted the UF but no luck . By running splunk btool command I can see the monitor stanza for the missing sourcetype in inputs.conf along with others Please guide me on this Thanks

Viewing all articles
Browse latest Browse all 1551

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>