Getting Data In

Accessing SharePoint directories using UNC: Why splunkd.log shows "Monitoring file or directory that doesn't exist at startup time"?

DonDandrea
Path Finder

I am trying to use fschange to monitor some SharePoint directories. As a user on my remote forwarder box I can access the directories. I am logged onto the server using the same domain account that splunkd uses. When I enable the fschange monitoring I get the following message in the splunkd.log.

08-08-2014 09:17:41.259 -0400 WARN FSChangeMonitor - Monitoring file or directory that doesn't exist at startup time

any help you could provide would be greatly appreciated.

Thank you
Don

Tags (3)
0 Karma
1 Solution

DonDandrea
Path Finder

We never found a solution to this problem. The data is stored in a SQL database. You can access the data using a UNC path from a windows workstation or server but SharePoint is rendering the output. Splunk does not access the data in the same way and SharePoint is not rendering the data for Splunk. We considered going after the data directly from the DB but Microsoft discourages that. In the end our solution will be to send the data someplace other than SharePoint.

View solution in original post

0 Karma

DonDandrea
Path Finder

We never found a solution to this problem. The data is stored in a SQL database. You can access the data using a UNC path from a windows workstation or server but SharePoint is rendering the output. Splunk does not access the data in the same way and SharePoint is not rendering the data for Splunk. We considered going after the data directly from the DB but Microsoft discourages that. In the end our solution will be to send the data someplace other than SharePoint.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Quantify Your Splunk Investment Impact: Introducing Savings Metrics to Value Insights

Building on the foundation established in our initial Value Insights releases, we are introducing the Savings ...

Event Series: Telemetry Pipeline Management

Balancing Scale and Spend: Gaining Control Over High-Volume Metrics in Splunk Observability Cloud As ...

Kick the Tires Before You Commit: A Hands-On Tour of the Splunk Observability Cloud ...

Evaluating an enterprise observability platform usually goes like this: fill out a form, get a free trial with ...