Getting Data In

Can Splunk Ingest This?

Communicator

Hi, can Splunk ingest .edb (Exchange Database) files?

0 Karma
1 Solution

Influencer

You can create a monitor input on this file on forwarder and check if data is indexed or not.

[monitor:///tmp/*.edb]
sourcetype = test_data

Search query: index=main sourcetype = test_data

View solution in original post

0 Karma

Influencer

You can create a monitor input on this file on forwarder and check if data is indexed or not.

[monitor:///tmp/*.edb]
sourcetype = test_data

Search query: index=main sourcetype = test_data

View solution in original post

0 Karma