Getting Data In

Can you create a batch input processing using the admin interface?

tomhowe
New Member

The documentation for input directories shows how to create a batch input processor using config. Is there a way to do it using the admin interface?

http://www.splunk.com/base/Documentation/4.1.6/Admin/Monitorfilesanddirectories

Colleague who has unix password is on holiday! I only have access to admin interface.

Tags (3)
0 Karma

tomhowe
New Member

We want to set up a new input feed from JMS. I have built a JMS->Camel(File) adaptor that spits out all messages to files in a directory. Unfortunately, at the moment we cant write the files into the $SPLUNKHOME/var/spool/splunk directory because we dont have access to the unix account. So I'm trying to set up a directory elsewhere that splunk can read these files from.

We may also want to have different files being collected for different indexes, so it makes sense to separate them in different directories.

Also, ideally we would prefer to configure this without needing unix account access.

0 Karma

gkanapathy
Splunk Employee
Splunk Employee

The "Upload a local file" option I believe uploads a file and places into the batch directory for indexing. There's rarely a need (and even more rarely an emergency need) to create an entire new batch input directory. Usually you're just trying to add a file to an existing one. Is that your case?

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...