Hello and good morning,
I have a heavy forwarder that takes inputs from several network drives and it's working fine so far.
The question I can't find an answer to in the Splunk docs is, is getting data from network drives best practice?
The thing is, I have performance problems. The data is indexed with a delay and I'm trying to figure out if maybe the network drives have a part in that.
Any assistance on this would be greatly appreciated. A link to a Splunk doc would be perfect.
Thank you
↧