Getting Data In

Forwarder - Apache

tuplink
New Member

i am trying to get the forwarder to work with apache logs from the CLI

i issue the command
"./splunk input add monitor /var/log/apache2/"
and get this message
"Parameters must be in the form '-parameter value'"

0 Karma
1 Solution

rturk
Builder

You have provided the incorrect command. Try removing 'input' so it reads:

splunk add monitor /var/log/apache2/

As per the docs - Use the CLI

This should fix it for you 🙂

View solution in original post

0 Karma

rturk
Builder

You have provided the incorrect command. Try removing 'input' so it reads:

splunk add monitor /var/log/apache2/

As per the docs - Use the CLI

This should fix it for you 🙂

0 Karma

tuplink
New Member

thank you the CLI Can be so confusing

0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...