Log into Splunk Investigate
Go to the "Manage Data" tab
Click on the "Add Data" button
Select a data source. You can bring data into Splunk Investigate by uploading a file, using Universal Forwarder, the HTTP event collector or AWS 3 connector. More connectors will be added shortly.
Select the "Upload file" connector
Drag and Drop the log file into the uploader and add details about the schema of your file such as headers, record delimiters etc
Preview your data. Prepare or Clean your data by Clicking on "Prepare Data".
Successfully Activate your pipeline by choosing the name of the pipeline and Click "Save & Activate"