All Apps and Add-ons

Monitoring file which application 'locks' i.e. concurrent access causes application issues.

stanwin
Contributor

We have the log files on AS400 box.

Getting them out of server is not the query. Need to understand for an application JD Edwards that is holding 'read lock' on file.

To clarify it isnt a lock per say rather, If any 3rd party tool tries to read file (live log) than application will get issues/unstable due to multiple log file read .
Oracle has declined support for this stating wont support 3rd party integrations. .

Was wondering if anyone has had any experience dealing with such type of file monitoring scenarios.

Below are options :
-intermediate copies/FTP is not best option due to file rollouts?
-Syslog /other forwarding agents will read the file leading to issues mentioned.

thanks
Stanwin

Tags (1)
0 Karma
1 Solution

stanwin
Contributor

The solution for this is to FTP data onto intermediate server OR copy to different path where splunk can read them. .

In our case the application did not get affected if file was copied .

View solution in original post

0 Karma

stanwin
Contributor

The solution for this is to FTP data onto intermediate server OR copy to different path where splunk can read them. .

In our case the application did not get affected if file was copied .

0 Karma

pmdba
Builder

Have you looked at the AS/400 app for Splunk? There are a number of related questions on this site, as well.

0 Karma

stanwin
Contributor

It ONLY gets you AUDJRN data from the server, not actual application logs.

0 Karma
Get Updates on the Splunk Community!

.conf25 Registration is OPEN!

Ready. Set. Splunk! Your favorite Splunk user event is back and better than ever. Get ready for more technical ...

Detecting Cross-Channel Fraud with Splunk

This article is the final installment in our three-part series exploring fraud detection techniques using ...

Splunk at Cisco Live 2025: Learning, Innovation, and a Little Bit of Mr. Brightside

Pack your bags (and maybe your dancing shoes)—Cisco Live is heading to San Diego, June 8–12, 2025, and Splunk ...