Knowledge Management

JBoss log file dosen't get inserted as data source

nabruzzese
New Member

I've set up a splunk server and setup a server.log file from jbossas, and the log file doen't show on the search panel as data sources, I've added a apache error.log and works?
How can I add a server.log jbossas file into splunk?

jboss as 5.1
splunk ver 6.x
splunks run on root user, jboss as on jboss user, root has access to server.log on jbossas instalation fodler

Tags (1)
0 Karma

Lowell
Super Champion

Have you started here? http://docs.splunk.com/Documentation/Splunk/latest/Data/FilesDirslocal

From your question it's unclear exactly what you've done. If you've setup your log file as an input to Splunk, try running a search like:

source=*server.log*

If that doesn't return anything, then you probably have a problem with your inputs.

Another resource:

http://docs.splunk.com/Documentation/Splunk/6.0.1/Data/WhatSplunkcanmonitor

0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...