You can not select more than 25 topics
Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
54 lines
2.8 KiB
54 lines
2.8 KiB
5 months ago
|
<!-- Version 9.2.2.20240415 -->
|
||
|
<!-- log-searchprocess.cfg -->
|
||
|
<!--
|
||
|
This file contains the logging output controls for searches
|
||
|
-->
|
||
|
# search logs go a separate file
|
||
|
rootCategory=INFO,searchprocessAppender
|
||
|
appender.searchprocessAppender=RollingFileAppender
|
||
|
appender.searchprocessAppender.fileName=${SPLUNK_DISPATCH_DIR}/search.log
|
||
|
appender.searchprocessAppender.maxFileSize=10000000 # default: 10MB (specified in bytes).
|
||
|
appender.searchprocessAppender.maxBackupIndex=3
|
||
|
appender.searchprocessAppender.layout=PatternLayout
|
||
|
appender.searchprocessAppender.layout.ConversionPattern=%d{%m-%d-%Y %H:%M:%S.%l} %-5p %c [%T %t] - %m%n
|
||
|
category.AwsSDK = FATAL,searchprocessAppender
|
||
|
category.S3ClientProps = WARN,searchprocessAppender
|
||
|
category.CMBucketId = WARN,searchprocessAppender
|
||
|
# Uncomment for verbose logging useful for debugging external commands
|
||
|
# category.ChunkedExternProcessor=DEBUG
|
||
|
# HadoopConnect metrics spews a lot of logs, let's not pollute the other files.
|
||
|
appender.hcMetrics=RollingFileAppender
|
||
|
appender.hcMetrics.fileName=${SPLUNK_HOME}/var/log/splunk/export_metrics.log
|
||
|
appender.hcMetrics.maxFileSize=25000000 # default: 25MB (specified in bytes).
|
||
|
appender.hcMetrics.maxBackupIndex=5
|
||
|
appender.hcMetrics.layout=PatternLayout
|
||
|
appender.hcMetrics.layout.ConversionPattern=%d{%m-%d-%Y %H:%M:%S.%l %z} %-5p %c - %m%n
|
||
|
category.HCMetrics=INFO,hcMetrics
|
||
|
# kvstore
|
||
|
category.MongoDriver=ERROR
|
||
|
# watchdog log
|
||
|
appender.watchdog_appender=RollingFileAppender
|
||
|
appender.watchdog_appender.fileName=${SPLUNK_DISPATCH_DIR}/watchdog.log
|
||
|
appender.watchdog_appender.maxFileSize=10000000 # default: 10MB (specified in bytes).
|
||
|
appender.watchdog_appender.maxBackupIndex=3
|
||
|
appender.watchdog_appender.layout=PatternLayout
|
||
|
appender.watchdog_appender.layout.ConversionPattern=%d{%m-%d-%Y %H:%M:%S.%l %z} %-5p %c - %m%n
|
||
|
category.Watchdog=INFO,watchdog_appender
|
||
|
category.WatchdogActions=INFO,watchdog_appender
|
||
|
category.Pstacks=INFO,watchdog_appender
|
||
|
category.PstackServerThread=INFO,watchdog_appender
|
||
|
category.PstackGeneratorThread=INFO,watchdog_appender
|
||
|
category.WatchdogStacksUtils=INFO,watchdog_appender
|
||
|
category.WatchdogInit=INFO,watchdog_appender
|
||
|
# Search telemetry logs
|
||
|
appender.searchTelemetryAppender=RollingFileAppender
|
||
|
appender.searchTelemetryAppender.fileName=${SPLUNK_DISPATCH_DIR}/search_telemetry.log
|
||
|
appender.searchTelemetryAppender.maxFileSize=10000000 # default: 10MB (specified in bytes).
|
||
|
appender.searchTelemetryAppender.maxBackupIndex=5
|
||
|
appender.searchTelemetryAppender.layout=PatternLayout
|
||
|
appender.searchTelemetryAppender.layout.ConversionPattern=%d{%m-%d-%Y %H:%M:%S.%l %z} %-5p %c - %m%n
|
||
|
category.SearchTelemetry=INFO,searchTelemetryAppender
|
||
|
category.SearchTelemetrySingleton=INFO,searchTelemetryAppender
|
||
|
category.SearchTelemetryUtils=INFO,searchTelemetryAppender
|
||
|
category.JobInspector=INFO,searchTelemetryAppender
|