All Apps and Add-ons

missing \local\inputs.conf file

HMTODD
Explorer

I used the rest API Modular Input form to create a new input. I can see the input in the Web UI and I can edit. I thought the configuration would be saved to inputs.conf but I cannot find this file. Do I need to create /local/inputs.conf or is the input configuration being saved elsewhere?

Tags (1)
0 Karma
1 Solution

sbbadri
Motivator

you can get inputs.conf from this location

$SPLUNK_HOME$/etc/apps/rest_ta/local/inputs.conf

or

$SPLUNK_HOME$/etc/apps/search/local/inputs.conf

View solution in original post

0 Karma

sbbadri
Motivator

you can get inputs.conf from this location

$SPLUNK_HOME$/etc/apps/rest_ta/local/inputs.conf

or

$SPLUNK_HOME$/etc/apps/search/local/inputs.conf

0 Karma

HMTODD
Explorer

There is no folder $SPLUNK_HOME$/etc/apps/rest_ta/local/inputs.conf. The inputs.conf located at $SPLUNK_HOME$/etc/apps/search/local/inputs.conf does not contain any of the modular inputs settings created for the Rest TA .

0 Karma

sbbadri
Motivator

ah okay,
From GUI, settings->Data inputs-> REST. It will have one table. Check under "App" column corresponding to your rest inputs.

$SPLUNk_HOME$/etc/app/app shown in the tabluar column/local/

0 Karma

HMTODD
Explorer

OK, so I can see the modular input in the Web UI at settings->Data inputs - >REST. In teh table presenting the app names is "launcher". When I look in $SPLUNK_HOME$/etc/apps/launcher/local/inputs.conf - Aha - there are my input settings.

Thanks!

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Rounding off the Splunk Dashboard Contest

What does a contest-winning Splunk dashboard look like? In this case, it isn't in a browser tab at all. It ...

A Four Part Event Series: AI + Observability: AI Agents, LLMs, Apps, & Infrastructure

AI + Observability: AI Agents, LLMs, Apps, & Infrastructure The rapid evolution of artificial intelligence ...