Mike Hill
11/12/2019, 4:36 PM--filesystem_result_log_file=/var/log/osquery/result.log
and the fleet service has created both log files. status.log is populating as expected, but result is empty at the moment. I have set up a query in a pack, which is mapped to a test host. I can happily run ad-hoc queries against the host and see the results in the GUI, so I know the two are talking. Is there anywhere obvious I should be checking in my troubleshooting, please? (appreciate this is pretty vague info!)zwass
11/12/2019, 4:43 PMMike Hill
11/12/2019, 4:44 PMzwass
11/12/2019, 4:48 PMMike Hill
11/12/2019, 4:52 PMzwass
11/12/2019, 4:52 PM