I am trying to use a Universal Forwarder to monitor some local files. I am editing the file
$SPLUNK_HOME\etc\apps\Splunk_TA_windows\local\inputs.conf , adding the following statement:
[monitor:///.../*.txt] index = main recursive = false disabled = 0
It is my understanding that this will search the root directory and all sub-directories for any text files. Am I missing something? I haven't seen any new data appear on my Indexer.