Hi, not sure if this is the best place to ask, maybe someone knows: I’m using fleet to make queries and receive the results, however, regardless how I configure the logging plugin in fleet, it is not writing my live queries results to the file system, is this expected?
01/21/2020, 12:01 PM
This seems related to a problem I have, have you tried restarting the osquery host after pushing the plugin configuration?
01/21/2020, 1:05 PM
the hosts have osquery configuration manually, I’m saying queries results are forwarded to fleet (I can see the results in the web GUI) but not on the filesystem, and in the osquery host they are written to filesystem
01/21/2020, 3:22 PM
Generally the #kolide channel is the best place to ask about the kolide open source software