Hi,
I'm using an UDP connection with syslog and Splunk.
My problem is that Splunk only show me the firsts 2072 characters of a log. I try to increase the values of "TRUNCATE" and "MAX_EVENTS" inside the props.conf, but it didn't work.
Also I checked with Wireshark that the logs are sended correctly with syslog.
Any suggestions?
Thanks.
... View more