Hi I have 2 zip file that I want to add into Splunk.
1 is of 50 GB containing three folders that are filled with XML log files
other is a normal file that is containing XML files...no folders
How can I add these two files in Splunk...Pls suggest
The getting data in manual explains different ways to get data into your splunk instance.
If it is going to be one time data input then you can make use of Splunk Web
You can also place the files in some directory and configure your splunk instance to monitor that directory.
If you have any doubts on what kind of data splunk indexes. Here it is: Splunk Enterprise decompresses archive files before it indexes them. It can handle these common archive file types: tar, gz, bz2, tar.gz, tgz, tbz, tbz2, zip, and z.
More information at: http://docs.splunk.com/Documentation/Splunk/6.1.2/Data/Monitorfilesanddirectories
Follow similar related questions
View solution in original post
Under Related questions section on the right side you have many links which you can refer to. Make use of those links.