Installed Splunk Light on Windows 2012 R2 Server. Mapped windows 2003
server network drive. Under Add Data -> Files and Directories, I cannot browse the
mapped drive. I would like to have Splunk run on the 2012 server and collect
data/events/logs from all other Windows boxes (mapped drives/directories/files) on
the network. Any assistance on how to do this would be greatly appreciated.
Thanks. Frank.
Hi,
A mapped drive is user specific. With default settings splunk service is running as system user.
For indexing data on a network drive just use the unc path - make sure the computeraccount having right on the share. Otherwise run splunk with an account with rights on the share.
Regards,
Andreas