Getting Data In

Combining files

Jananee_iNautix
Path Finder

I have different log files .I want to combine these log files into a single file .Is this possible in splunk and if so how to do?
Can anyone give me some idea on it

Tags (1)
0 Karma

yannK
Splunk Employee
Splunk Employee

Why would you do such a thing : Is your intention to export all the events as a single file ?

If you have indexed 2 files /path/to/file1 and /path/to/file2
why not searching on source=/path/to/file1 OR source=/path/to/file2
and have all the events displayed together.

0 Karma

Jananee_iNautix
Path Finder

No my intention is to combine the files together into single file before indexing

0 Karma

martin_mueller
SplunkTrust
SplunkTrust

Index them into the same index and/or using the same sourcetype, then filter based on index and/or sourcetype and ignore the source altogether.

0 Karma

Jananee_iNautix
Path Finder

Can you suggest some documentation where i could see the process you said in detail.

0 Karma
Get Updates on the Splunk Community!

Splunk Classroom Chronicles: Training Tales and Testimonials (Episode 4)

Welcome back to Splunk Classroom Chronicles, our ongoing series where we shine a light on what really happens ...

From GPU to Application: Monitoring Cisco AI Infrastructure with Splunk Observability ...

AI workloads are different. They demand specialized infrastructure—powerful GPUs, enterprise-grade networking, ...

Application management with Targeted Application Install for Victoria Experience

  Experience a new era of flexibility in managing your Splunk Cloud Platform apps! With Targeted Application ...