New to Splunk. Can Splunk monitor or audit changes to a Netapp file share? We would like to know about file or folder deletions, moves on those shares, etc. I have installed and configured the ONTAP add-on and application and have data in.
Additionally, I am trying to convert my WinEventLog:Application logs to a metrics index, but want to retain the event data from this sourcetype as well. Is it possible to have both? Will this affect my license usage if I am sending the same data to both a metrics index and an event index?