<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic IIS logs: why the error WARN  FilesystemChangeWatcher - error getting attributes of path &amp;quot;E:\inetpub\logs\LogFiles&amp;quot;:? in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/IIS-logs-why-the-error-WARN-FilesystemChangeWatcher-error/m-p/621451#M107036</link>
    <description>&lt;P&gt;We have a rather huge solution with 2000+ servere.&amp;nbsp; &amp;nbsp;&lt;/P&gt;
&lt;P&gt;Our company needs that we monitor the IIS logs.&lt;/P&gt;
&lt;P&gt;Problem is that not all server has IIS and some have logs on&amp;nbsp; C: drive and other on E: drive.&lt;/P&gt;
&lt;P&gt;We did then setup to monitor&amp;nbsp;"&lt;STRONG&gt;E:\inetpub\logs\LogFiles&lt;/STRONG&gt;" and&amp;nbsp;"&lt;STRONG&gt;C:\inetpub\logs\LogFiles&lt;/STRONG&gt;" on all severs.&amp;nbsp; It would be impossible to select just the servers with IIS running.&amp;nbsp; &amp;nbsp;The result of this is that we do get lots of warning in our logs. Some server have logs in E and some in C and som do not have IIS logs, so logs are filled with this messages:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;11-19-2022 16:22:04.199 +0100 WARN  FilesystemChangeWatcher - error getting attributes of path "E:\inetpub\logs\LogFiles": The device is not ready.&lt;/LI-CODE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;1. Does this give any problem?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;2. This clogs up the logs, so its harder to find real problem, so if this logs are not giving any problem, can it be turned of for some monitored files?&lt;/P&gt;</description>
    <pubDate>Mon, 21 Nov 2022 03:37:27 GMT</pubDate>
    <dc:creator>jotne</dc:creator>
    <dc:date>2022-11-21T03:37:27Z</dc:date>
    <item>
      <title>IIS logs: why the error WARN  FilesystemChangeWatcher - error getting attributes of path "E:\inetpub\logs\LogFiles":?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/IIS-logs-why-the-error-WARN-FilesystemChangeWatcher-error/m-p/621451#M107036</link>
      <description>&lt;P&gt;We have a rather huge solution with 2000+ servere.&amp;nbsp; &amp;nbsp;&lt;/P&gt;
&lt;P&gt;Our company needs that we monitor the IIS logs.&lt;/P&gt;
&lt;P&gt;Problem is that not all server has IIS and some have logs on&amp;nbsp; C: drive and other on E: drive.&lt;/P&gt;
&lt;P&gt;We did then setup to monitor&amp;nbsp;"&lt;STRONG&gt;E:\inetpub\logs\LogFiles&lt;/STRONG&gt;" and&amp;nbsp;"&lt;STRONG&gt;C:\inetpub\logs\LogFiles&lt;/STRONG&gt;" on all severs.&amp;nbsp; It would be impossible to select just the servers with IIS running.&amp;nbsp; &amp;nbsp;The result of this is that we do get lots of warning in our logs. Some server have logs in E and some in C and som do not have IIS logs, so logs are filled with this messages:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;11-19-2022 16:22:04.199 +0100 WARN  FilesystemChangeWatcher - error getting attributes of path "E:\inetpub\logs\LogFiles": The device is not ready.&lt;/LI-CODE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;1. Does this give any problem?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;2. This clogs up the logs, so its harder to find real problem, so if this logs are not giving any problem, can it be turned of for some monitored files?&lt;/P&gt;</description>
      <pubDate>Mon, 21 Nov 2022 03:37:27 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/IIS-logs-why-the-error-WARN-FilesystemChangeWatcher-error/m-p/621451#M107036</guid>
      <dc:creator>jotne</dc:creator>
      <dc:date>2022-11-21T03:37:27Z</dc:date>
    </item>
  </channel>
</rss>

