I installed and configured the forwarder on windows. in the monitoring folder, I have multiple folders. can the forwarder monitor more than one folder?
thank you
Yes. The references to the inputs.conf configuration file is at http://docs.splunk.com/Documentation/Splunk/6.1.2/admin/inputsconf
In the monitor section:
[monitor://
* This directs Splunk to watch all files in
*
* You must specify the input type and then the path, so put three slashes in your path if you are starting
at the root (to include the slash that goes before the root directory).
You can add any number of monitor://
stanzas to inputs.conf, see http://docs.splunk.com/Documentation/Splunk/6.1.2/Data/Monitorfilesanddirectories for more.
Thanks but which inputs file? There about 8 of them.
Do open a new question with sufficient details about your issue.