<html>
<head>
<meta content="text/html; charset=utf-8" http-equiv="Content-Type">
</head>
<body bgcolor="#FFFFFF" text="#000000">
Remember that you must restart Xymon to pick up any changes in the
user/group settings (just as you need to logout/login if you add
yourself to a group).<br>
<br>
Regards,<br>
Henrik<br>
<br>
<br>
<div class="moz-cite-prefix">Den 14-09-2015 kl. 17:35 skrev
Elizabeth Jones:<br>
</div>
<blockquote
cite="mid:%3C1189947403.2227192.1442244936415.JavaMail.yahoo@mail.yahoo.com%3E"
type="cite">
<div style="color:#000; background-color:#fff;
font-family:HelveticaNeue, Helvetica Neue, Helvetica, Arial,
Lucida Grande, sans-serif;font-size:16px">We just set up splunk
in our environment and have made all our /var/log/messages owned
by root:splunk mode 640 so that splunk can read and index these
files. I was thinking I could add xymon user to splunk group
and that would allow xymon to read /var/log/messages as well,
but it doesn't seem to be working. I can read /var/log/messages
as the xymon user but the msgs web page is still showing <br>
<pre class="" id="yui_3_16_0_1_1442244748758_2576">Cannot open logfile /var/log/messages : Permission denied</pre>
<div id="yui_3_16_0_1_1442244748758_2494">Any ideas on what else
I can do to allow xymon to get these logs?<br>
</div>
</div>
</blockquote>
<br>
</body>
</html>