Deployment Architecture

What does Splunk log "rollout" refer to?

nagarjuna280
Communicator

I heard the word "rollout" regarding /opt/splunk/var/log/splunk files

Tags (1)
0 Karma

somesoni2
Revered Legend

The rotation of Splunk internal logs files, available in $SPLUNK_HOME/var/log/splunk folder, is managed by log.cfg file. The by default they roll to a new file when the log file size reaches 25MB (specified in bytes) and 5 backup/rolledover files are retained. See below links for more details:

https://docs.splunk.com/Documentation/Splunk/6.5.0/Troubleshooting/WhatSplunklogsaboutitself
https://docs.splunk.com/Documentation/Splunk/6.5.1/Troubleshooting/Enabledebuglogging#In_log.cfg

0 Karma

ddrillic
Ultra Champion

What do you really mean?

Get Updates on the Splunk Community!

Exporting Splunk Apps

Join us on Monday, October 21 at 11 am PT | 2 pm ET!With the app export functionality, app developers and ...

Cisco Use Cases, ITSI Best Practices, and More New Articles from Splunk Lantern

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Build Your First SPL2 App!

Watch the recording now!.Do you want to SPL™, too? SPL2, Splunk's next-generation data search and preparation ...