I haven’t set this type of input before. I have logs available over http from a URL like below. The typical user views the log in their browser. What is the easiest way to configure my inputs.conf file Index and Different Sourcetypes.
You need to setup a scripted input for this, and of course a script that handles fetching the logs. http://splunk-base.splunk.com/answers/64748/how-to-feed-bunch-of-files-from-the-internet-itself-into...