<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Universal Forwarder Inputs Configuration in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/Universal-Forwarder-Inputs-Configuration/m-p/111838#M23418</link>
    <description>&lt;P&gt;If you used the installer, then the input configuation is going to be in &lt;CODE&gt;Splunk\etc\apps\MSICreated\local\inputs.conf&lt;/CODE&gt;&lt;/P&gt;</description>
    <pubDate>Wed, 23 Oct 2013 17:06:04 GMT</pubDate>
    <dc:creator>lukejadamec</dc:creator>
    <dc:date>2013-10-23T17:06:04Z</dc:date>
    <item>
      <title>Universal Forwarder Inputs Configuration</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Universal-Forwarder-Inputs-Configuration/m-p/111837#M23417</link>
      <description>&lt;P&gt;Version 5.0.5&lt;BR /&gt;
Windows&lt;/P&gt;

&lt;P&gt;I installed the Universal Forwarder on my windows machine using the installation wizard. The forwarder is sending log files to the server correctly. What I'm trying to figure out is where the configuration file containing the directory that is being monitor is stored. I looked in etc/system/local/inputs.conf, but the values were not there. Any other thoughts? I'm puzzled where the forwarder is getting the directory to monitor.&lt;/P&gt;</description>
      <pubDate>Wed, 23 Oct 2013 16:59:54 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Universal-Forwarder-Inputs-Configuration/m-p/111837#M23417</guid>
      <dc:creator>sjwone</dc:creator>
      <dc:date>2013-10-23T16:59:54Z</dc:date>
    </item>
    <item>
      <title>Re: Universal Forwarder Inputs Configuration</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Universal-Forwarder-Inputs-Configuration/m-p/111838#M23418</link>
      <description>&lt;P&gt;If you used the installer, then the input configuation is going to be in &lt;CODE&gt;Splunk\etc\apps\MSICreated\local\inputs.conf&lt;/CODE&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 23 Oct 2013 17:06:04 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Universal-Forwarder-Inputs-Configuration/m-p/111838#M23418</guid>
      <dc:creator>lukejadamec</dc:creator>
      <dc:date>2013-10-23T17:06:04Z</dc:date>
    </item>
  </channel>
</rss>

