Hi,
We have referenced How To: Access and Export ArcGIS Monitor Server Logs and identified our ArcGIS Monitor User authentication logs (at DEBUG level).
Our security team are now trying to have them ingested into Splunk however cannot configure an appropriate connector.
- Is there any avenues to change the logging location to postgres or a file on the system that's not SQL?
- Can the new API for ArcGIS Monitor obtain these logs?
- What is the default connection settings for the sqllite database (user, pw, port) and does it have an active listening connector?
We can install other third party apps and script up file exports but don't believe that this should be the first step when you might have a solution to the above that can easily resolve the issue.
Many thanks
Tim