<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Monitor remote Unix directory log file in All Apps and Add-ons</title>
    <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Monitor-remote-Unix-directory-log-file/m-p/164443#M15500</link>
    <description>&lt;P&gt;Thanks for your answer.&lt;/P&gt;

&lt;P&gt;I think from Universal Forwarder will push the data from Unix machine to Splunk, if this happen, then will it hurt any network resources/network traffic. I need to monitor for every 2Mins of interval.&lt;/P&gt;

&lt;P&gt;From Splunk cant we look/login into the other Unix/Windows server ?&lt;/P&gt;

&lt;P&gt;Regards&lt;/P&gt;</description>
    <pubDate>Tue, 25 Feb 2014 09:00:47 GMT</pubDate>
    <dc:creator>Ravi_c</dc:creator>
    <dc:date>2014-02-25T09:00:47Z</dc:date>
    <item>
      <title>Monitor remote Unix directory log file</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Monitor-remote-Unix-directory-log-file/m-p/164441#M15498</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;

&lt;P&gt;Im new to splunk, I need to check the remote unix directory logfiles,&lt;/P&gt;

&lt;P&gt;I need this approach as described below,&lt;BR /&gt;
How can I look into that server, with ssh servername/password&lt;BR /&gt;
Goto Specified path like /User/bin/MyAppl/Logs&lt;BR /&gt;
Take the latest log file&lt;BR /&gt;
Search for any ERROR like Java error.&lt;/P&gt;

&lt;P&gt;If any error is there then&lt;BR /&gt;
send a mail to the mail id.&lt;/P&gt;</description>
      <pubDate>Tue, 25 Feb 2014 07:57:27 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Monitor-remote-Unix-directory-log-file/m-p/164441#M15498</guid>
      <dc:creator>Ravi_c</dc:creator>
      <dc:date>2014-02-25T07:57:27Z</dc:date>
    </item>
    <item>
      <title>Re: Monitor remote Unix directory log file</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Monitor-remote-Unix-directory-log-file/m-p/164442#M15499</link>
      <description>&lt;P&gt;Hi Ravi_c,&lt;/P&gt;

&lt;P&gt;this is not quiet the way it works. &lt;BR /&gt;
First you need to understand how Splunk works, take a deep look at the docs about &lt;A href="http://docs.splunk.com/Documentation/Splunk/latest/Data/WhatSplunkcanmonitor"&gt;getting data in&lt;/A&gt;. After that read the docs about the &lt;A href="http://docs.splunk.com/Documentation/Splunk/6.0.2/Forwarding/Introducingtheuniversalforwarder"&gt;universal forwarder&lt;/A&gt;. When done with that, learn how to &lt;A href="http://docs.splunk.com/Documentation/Splunk/latest/SearchTutorial/WelcometotheSearchTutorial"&gt;search&lt;/A&gt; for the added data and finally create some &lt;A href="http://docs.splunk.com/Documentation/Splunk/latest/Alert/Aboutalerts"&gt;alerts&lt;/A&gt; to get you an email if something is error'ing ...&lt;/P&gt;

&lt;P&gt;hope this helps to get you started ...&lt;/P&gt;

&lt;P&gt;cheers, MuS&lt;/P&gt;</description>
      <pubDate>Tue, 25 Feb 2014 08:19:59 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Monitor-remote-Unix-directory-log-file/m-p/164442#M15499</guid>
      <dc:creator>MuS</dc:creator>
      <dc:date>2014-02-25T08:19:59Z</dc:date>
    </item>
    <item>
      <title>Re: Monitor remote Unix directory log file</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Monitor-remote-Unix-directory-log-file/m-p/164443#M15500</link>
      <description>&lt;P&gt;Thanks for your answer.&lt;/P&gt;

&lt;P&gt;I think from Universal Forwarder will push the data from Unix machine to Splunk, if this happen, then will it hurt any network resources/network traffic. I need to monitor for every 2Mins of interval.&lt;/P&gt;

&lt;P&gt;From Splunk cant we look/login into the other Unix/Windows server ?&lt;/P&gt;

&lt;P&gt;Regards&lt;/P&gt;</description>
      <pubDate>Tue, 25 Feb 2014 09:00:47 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Monitor-remote-Unix-directory-log-file/m-p/164443#M15500</guid>
      <dc:creator>Ravi_c</dc:creator>
      <dc:date>2014-02-25T09:00:47Z</dc:date>
    </item>
    <item>
      <title>Re: Monitor remote Unix directory log file</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Monitor-remote-Unix-directory-log-file/m-p/164444#M15501</link>
      <description>&lt;P&gt;universal forwarder is continuously monitoring any input you did configure. Network usage can be limited for the forwarder with the [thruput] maxKBps = &lt;INTEGER&gt; in limits.conf.&lt;BR /&gt;
Remote SSH login is not possible by using Splunk, but you could either mount this remote share locally or create a scripted input to get the files needed over scp/rsync.&lt;/INTEGER&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 25 Feb 2014 09:09:26 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Monitor-remote-Unix-directory-log-file/m-p/164444#M15501</guid>
      <dc:creator>MuS</dc:creator>
      <dc:date>2014-02-25T09:09:26Z</dc:date>
    </item>
  </channel>
</rss>

