Updated and New Dashboards! in counterpart app (Check Log Permissions).
Have you ever had issues reading logs with a Splunk agent on a Unix host and want to know why? Do you not have shell access to troubleshoot log collection? Do you want to know if logs exist or are empty prior to trying to index them? To answer these questions in the Splunk universe and more, try this technology addon (TA-check-log-permissions). Be sure to install the counterpart app (check-log-permissions) which includes a pre-configured dashboard to work with the data collected by this technology addon.
*** IMPORTANT - You need the App (link below) deployed to your search head(s) to get the pre-built dashboard to view events ***
The Dashboard App for this Technology Addon can be found here: https://splunkbase.splunk.com/app/3015/