I have a series of text files that are created by an application (LOGS).
New files will appear daily.
I need splunk to capture all that is in the folder and new onees as they appear.
I used the preview tool to capture one such file, and it showed the data well.
Commiting this data input to Splunk, and assigning it to the app SEARCH, and the custome index i made, i should be able to specify that index in SEARCh and see ALL the data.
I see nothing.
what is going on?
This question is unsolvable.
To be solvable, the minimum information set would be:
Other things that are likely needed