Getting Data In

Splunk prevents application to log

laurentjehu
Engager

Hi,

I'm testing Splunk to monitoring the log of an application. The logs are generated with log4j.
When I configure Splunk to index the log file, no more activity is traced by the application.

When using tail in command line, I don't have the problem.

How can I configure splunk not to lock the file ?

Best regards,
Laurent

Tags (3)
0 Karma
1 Solution

laurentjehu
Engager

I have found a solution by adding a syslog appender to the log configuration file of log4j.
Splunk has been set up to listen on port UDP 514.

View solution in original post

laurentjehu
Engager

I have found a solution by adding a syslog appender to the log configuration file of log4j.
Splunk has been set up to listen on port UDP 514.

Get Updates on the Splunk Community!

Your Guide to SPL2 at .conf24!

So, you’re headed to .conf24? You’re in for a good time. Las Vegas weather is just *chef’s kiss* beautiful in ...

Get ready to show some Splunk Certification swagger at .conf24!

Dive into the deep end of data by earning a Splunk Certification at .conf24. We're enticing you again this ...

Built-in Service Level Objectives Management to Bridge the Gap Between Service & ...

Now On-Demand Join us to learn more about how you can leverage Service Level Objectives (SLOs) and the new ...