<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How does Splunk find sourcetypes? in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/How-does-Splunk-find-sourcetypes/m-p/28703#M4929</link>
    <description>&lt;P&gt;should there be an inputs.conf in the default or local directories of Splunk for Blue Coat?&lt;/P&gt;</description>
    <pubDate>Tue, 12 Feb 2013 18:12:17 GMT</pubDate>
    <dc:creator>aapittts</dc:creator>
    <dc:date>2013-02-12T18:12:17Z</dc:date>
    <item>
      <title>How does Splunk find sourcetypes?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/How-does-Splunk-find-sourcetypes/m-p/28701#M4927</link>
      <description>&lt;P&gt;I have several instances of SplunkforBlueCoat and have recently run into a strange issue. Splunk cannot find the BlueCoat sourcetype. I haven't had this issue before and I've checked my props.conf &amp;amp; transforms.conf with correct ones and cannot find any differences. Can anyone point me in the right direction?&lt;/P&gt;</description>
      <pubDate>Tue, 12 Feb 2013 15:33:10 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/How-does-Splunk-find-sourcetypes/m-p/28701#M4927</guid>
      <dc:creator>aapittts</dc:creator>
      <dc:date>2013-02-12T15:33:10Z</dc:date>
    </item>
    <item>
      <title>Re: How does Splunk find sourcetypes?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/How-does-Splunk-find-sourcetypes/m-p/28702#M4928</link>
      <description>&lt;P&gt;check the inputs.conf, this is where you specify which sourcetype to apply to which source.&lt;/P&gt;</description>
      <pubDate>Tue, 12 Feb 2013 17:44:10 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/How-does-Splunk-find-sourcetypes/m-p/28702#M4928</guid>
      <dc:creator>yannK</dc:creator>
      <dc:date>2013-02-12T17:44:10Z</dc:date>
    </item>
    <item>
      <title>Re: How does Splunk find sourcetypes?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/How-does-Splunk-find-sourcetypes/m-p/28703#M4929</link>
      <description>&lt;P&gt;should there be an inputs.conf in the default or local directories of Splunk for Blue Coat?&lt;/P&gt;</description>
      <pubDate>Tue, 12 Feb 2013 18:12:17 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/How-does-Splunk-find-sourcetypes/m-p/28703#M4929</guid>
      <dc:creator>aapittts</dc:creator>
      <dc:date>2013-02-12T18:12:17Z</dc:date>
    </item>
    <item>
      <title>Re: How does Splunk find sourcetypes?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/How-does-Splunk-find-sourcetypes/m-p/28704#M4930</link>
      <description>&lt;P&gt;I'm not seeing where in the inputs.conf the source type is defined.&lt;/P&gt;</description>
      <pubDate>Tue, 12 Feb 2013 18:49:14 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/How-does-Splunk-find-sourcetypes/m-p/28704#M4930</guid>
      <dc:creator>aapittts</dc:creator>
      <dc:date>2013-02-12T18:49:14Z</dc:date>
    </item>
  </channel>
</rss>

