<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Windows Monitor Path for SPLUNK in Installation</title>
    <link>https://community.splunk.com/t5/Installation/How-I-would-use-monitor-path-in-my-inputs-conf/m-p/624626#M12176</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/234909"&gt;@SplunkDash&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;if you have a fixed path, you can use the full path e.g.:&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;[monitor://L:\MLTS\VPWSENTSHMS\CFT\TEST\*.*]&lt;/LI-CODE&gt;&lt;P&gt;or&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;[monitor://L:\MLTS\VPWSENTSHMS\CFT\*\*.*]&lt;/LI-CODE&gt;&lt;P&gt;if instead you could have a variable path, you can use three dots:&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;[monitor://L:\MLTS\...\*.*]&lt;/LI-CODE&gt;&lt;P&gt;Remember that in Windows you have to use "*.*" and not "*" as in Unix.&lt;/P&gt;&lt;P&gt;Ciao.&lt;/P&gt;&lt;P&gt;Giuseppe&lt;/P&gt;</description>
    <pubDate>Sat, 17 Dec 2022 06:09:07 GMT</pubDate>
    <dc:creator>gcusello</dc:creator>
    <dc:date>2022-12-17T06:09:07Z</dc:date>
    <item>
      <title>How I would use monitor path in my  inputs.conf?</title>
      <link>https://community.splunk.com/t5/Installation/How-I-would-use-monitor-path-in-my-inputs-conf/m-p/624625#M12175</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;How I would use monitor path in my&amp;nbsp; inputs.conf. All files are in the Windows machine&amp;nbsp;at the location:&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;MLTS(\\VPWSENTSHMS\CFT\TEST)(L:)&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;Should it be&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;[monitor://L:\MLTS\*]&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;Any recommendations will be highly appreciated. Thank you!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 19 Dec 2022 15:29:27 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/How-I-would-use-monitor-path-in-my-inputs-conf/m-p/624625#M12175</guid>
      <dc:creator>SplunkDash</dc:creator>
      <dc:date>2022-12-19T15:29:27Z</dc:date>
    </item>
    <item>
      <title>Re: Windows Monitor Path for SPLUNK</title>
      <link>https://community.splunk.com/t5/Installation/How-I-would-use-monitor-path-in-my-inputs-conf/m-p/624626#M12176</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/234909"&gt;@SplunkDash&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;if you have a fixed path, you can use the full path e.g.:&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;[monitor://L:\MLTS\VPWSENTSHMS\CFT\TEST\*.*]&lt;/LI-CODE&gt;&lt;P&gt;or&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;[monitor://L:\MLTS\VPWSENTSHMS\CFT\*\*.*]&lt;/LI-CODE&gt;&lt;P&gt;if instead you could have a variable path, you can use three dots:&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;[monitor://L:\MLTS\...\*.*]&lt;/LI-CODE&gt;&lt;P&gt;Remember that in Windows you have to use "*.*" and not "*" as in Unix.&lt;/P&gt;&lt;P&gt;Ciao.&lt;/P&gt;&lt;P&gt;Giuseppe&lt;/P&gt;</description>
      <pubDate>Sat, 17 Dec 2022 06:09:07 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/How-I-would-use-monitor-path-in-my-inputs-conf/m-p/624626#M12176</guid>
      <dc:creator>gcusello</dc:creator>
      <dc:date>2022-12-17T06:09:07Z</dc:date>
    </item>
    <item>
      <title>Re: Windows Monitor Path for SPLUNK</title>
      <link>https://community.splunk.com/t5/Installation/How-I-would-use-monitor-path-in-my-inputs-conf/m-p/624631#M12178</link>
      <description>&lt;P&gt;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/161352"&gt;@gcusello&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This is a great point, thank you, appreciated your support as always.&lt;/P&gt;</description>
      <pubDate>Sat, 17 Dec 2022 13:53:31 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/How-I-would-use-monitor-path-in-my-inputs-conf/m-p/624631#M12178</guid>
      <dc:creator>SplunkDash</dc:creator>
      <dc:date>2022-12-17T13:53:31Z</dc:date>
    </item>
    <item>
      <title>Re: Windows Monitor Path for SPLUNK</title>
      <link>https://community.splunk.com/t5/Installation/How-I-would-use-monitor-path-in-my-inputs-conf/m-p/624644#M12179</link>
      <description>&lt;P&gt;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/161352"&gt;@gcusello&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;How would I point path in monitor command if my source files are located in Windows Shared Folder? Is the following should work ("&lt;STRONG&gt;\\servername\comm2\Audit\Logs\" &lt;/STRONG&gt;is share folder name) :&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;[monitor://\\servername\comm2\Audit\Logs\*.log]&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Thank you so much!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 18 Dec 2022 01:06:22 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/How-I-would-use-monitor-path-in-my-inputs-conf/m-p/624644#M12179</guid>
      <dc:creator>SplunkDash</dc:creator>
      <dc:date>2022-12-18T01:06:22Z</dc:date>
    </item>
    <item>
      <title>Re: Windows Monitor Path for SPLUNK</title>
      <link>https://community.splunk.com/t5/Installation/How-I-would-use-monitor-path-in-my-inputs-conf/m-p/624649#M12181</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/234909"&gt;@SplunkDash&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;Using windows, you have to specify the drive you're using:&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;[monitor://F:\servername\comm2\Audit\Logs\*.log]&lt;/LI-CODE&gt;&lt;P&gt;Anyway,&amp;nbsp;you can test the path to insert in the monitor stanza header using the "dir" command in cmd window.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Ciao.&lt;/P&gt;&lt;P&gt;Giuseppe&lt;/P&gt;</description>
      <pubDate>Sun, 18 Dec 2022 09:28:34 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/How-I-would-use-monitor-path-in-my-inputs-conf/m-p/624649#M12181</guid>
      <dc:creator>gcusello</dc:creator>
      <dc:date>2022-12-18T09:28:34Z</dc:date>
    </item>
  </channel>
</rss>

