I am trying to sink logs on splunkweb from a Linux server, I added monitor@path of logs but cant sink.
Any suggestion.
Thanks.
Hi,
try to check for permissions errors in internal logs.
index=_internal host=yourhost "path" permission denied
This shows if there is any permission issue with the file which you tried monitoring.
Thanks for quick reply.