we have seen as issue where Splunk UF stops reading a specific file once file gets more than 20MB , and going to batch process ( which is waiting till file to complete) , My file gets Realtime data and reaches >1GB in 3 hours. which splunk cannot read that huge file. Please provide the config settings that i need to change for Splunk to read continuously .
Can you share the monitor stanza configured in inputs.conf and outputs conf on UF?