Hello, My task is to forward data from HP-UX to syslog server. I have to monitor some files for the changes in some directory f.ex: /etc. The configuration of the /etc/system/local/inputs.conf
The configuration of the /etc/system/local/outputs.conf
is it enough? (I can't see any messages in syslog server after splunk restart) Or I need to configure files props.conf and transforms.conf as well?
Thanks for help