Getting Data In

Can you create a batch input processing using the admin interface?

tomhowe
New Member

The documentation for input directories shows how to create a batch input processor using config. Is there a way to do it using the admin interface?

http://www.splunk.com/base/Documentation/4.1.6/Admin/Monitorfilesanddirectories

Colleague who has unix password is on holiday! I only have access to admin interface.

Tags (3)
0 Karma

tomhowe
New Member

We want to set up a new input feed from JMS. I have built a JMS->Camel(File) adaptor that spits out all messages to files in a directory. Unfortunately, at the moment we cant write the files into the $SPLUNKHOME/var/spool/splunk directory because we dont have access to the unix account. So I'm trying to set up a directory elsewhere that splunk can read these files from.

We may also want to have different files being collected for different indexes, so it makes sense to separate them in different directories.

Also, ideally we would prefer to configure this without needing unix account access.

0 Karma

gkanapathy
Splunk Employee
Splunk Employee

The "Upload a local file" option I believe uploads a file and places into the batch directory for indexing. There's rarely a need (and even more rarely an emergency need) to create an entire new batch input directory. Usually you're just trying to add a file to an existing one. Is that your case?

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Think Like an Architect: Introducing the Splunk Certified Cybersecurity Defense ...

In cybersecurity, defenders respond to threats. Architects design the systems that stop them.    As ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...