<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Merging eventtypes.conf (and other config files). in All Apps and Add-ons</title>
    <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Merging-eventtypes-conf-and-other-config-files/m-p/88341#M5810</link>
    <description>&lt;P&gt;The hard thing about merging the files, is dealing with duplicates.  Making direct copy and paste actions can be done really quickly through scripting or using rsync on *nix.  rsync has an option to update a destination and append shorter files.  You can also limit rsync into specific directories and might be a good trial path for you to head down.  If you want the security knowing your conf files are 100% correct, I don't think you're getting around doing it by hand.&lt;/P&gt;</description>
    <pubDate>Tue, 26 Apr 2011 23:48:46 GMT</pubDate>
    <dc:creator>bbingham</dc:creator>
    <dc:date>2011-04-26T23:48:46Z</dc:date>
    <item>
      <title>Merging eventtypes.conf (and other config files).</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Merging-eventtypes-conf-and-other-config-files/m-p/88340#M5809</link>
      <description>&lt;P&gt;Currently I have two separate search heads.  I'm trying to consolidate my configuration files so I can make use of searchhead pooling new in v. 4.2.  What would be the easiest way to do this?  I could copy/paste but it looks a little daunting.  I also need to synchronize the files in SPLUNK_HOME/etc/users.  Does anyone have any suggestions?&lt;/P&gt;</description>
      <pubDate>Mon, 25 Apr 2011 20:24:18 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Merging-eventtypes-conf-and-other-config-files/m-p/88340#M5809</guid>
      <dc:creator>nocostk</dc:creator>
      <dc:date>2011-04-25T20:24:18Z</dc:date>
    </item>
    <item>
      <title>Re: Merging eventtypes.conf (and other config files).</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Merging-eventtypes-conf-and-other-config-files/m-p/88341#M5810</link>
      <description>&lt;P&gt;The hard thing about merging the files, is dealing with duplicates.  Making direct copy and paste actions can be done really quickly through scripting or using rsync on *nix.  rsync has an option to update a destination and append shorter files.  You can also limit rsync into specific directories and might be a good trial path for you to head down.  If you want the security knowing your conf files are 100% correct, I don't think you're getting around doing it by hand.&lt;/P&gt;</description>
      <pubDate>Tue, 26 Apr 2011 23:48:46 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Merging-eventtypes-conf-and-other-config-files/m-p/88341#M5810</guid>
      <dc:creator>bbingham</dc:creator>
      <dc:date>2011-04-26T23:48:46Z</dc:date>
    </item>
    <item>
      <title>Re: Merging eventtypes.conf (and other config files).</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Merging-eventtypes-conf-and-other-config-files/m-p/88342#M5811</link>
      <description>&lt;P&gt;Alright - that's what I was afraid of.  Thanks for your help, lephino.&lt;/P&gt;</description>
      <pubDate>Thu, 28 Apr 2011 14:42:40 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Merging-eventtypes-conf-and-other-config-files/m-p/88342#M5811</guid>
      <dc:creator>nocostk</dc:creator>
      <dc:date>2011-04-28T14:42:40Z</dc:date>
    </item>
  </channel>
</rss>

