With FSChnage being deprecated in Splunk 5.0, what is the best method in Splunk 6 to monitor folder/file changes?
Thank you
The term Deprecation is misleading many of our customers. The fact remains - Splunk continues to maintain a file integrity checking feature through ver 5 and into the current version. See the link below:
http://docs.splunk.com/Documentation/Splunk/6.0/Data/Monitorchangestoyourfilesystem
The term Deprecation is misleading many of our customers. The fact remains - Splunk continues to maintain a file integrity checking feature through ver 5 and into the current version. See the link below:
http://docs.splunk.com/Documentation/Splunk/6.0/Data/Monitorchangestoyourfilesystem
I did find this write up in the docs section, and this helped get me going in the right direction.
http://docs.splunk.com/Documentation/Splunk/6.0/Data/MonitorfilesystemchangesonWindows
I am always open for more suggestions, or an easier way to do this.
Thank you