Getting Data In

How to monitor Directory in splunk

Thenmozhi
New Member

Hi,

We are trying to monitor directory using splunk.Using Files & Directory data inputs,we are unable to monitor directory.We have only file browser and when we try to click a directory SELCECT option is disabled and only if we click on files SELECT option is getting enabled.Do we have to make any configuration changes to enable directory monitoring???.

Regards,
Thenmozhi

Tags (2)
0 Karma

okrabbe_splunk
Splunk Employee
Splunk Employee

I suspect you are trying to preview the data. Preview only works with one file.

When you want to monitor a whole directory skip the preview:
A File or Directory -> Consume any file on the server -> Skip preview

Then select the radio button - "Continuously index data from a file or directory this Splunk instance can access" and enter the path in the input box.

0 Karma
Get Updates on the Splunk Community!

Updated Data Type Articles, Anniversary Celebrations, and More on Splunk Lantern

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

A Prelude to .conf25: Your Guide to Splunk University

Heading to Boston this September for .conf25? Get a jumpstart by arriving a few days early for Splunk ...

4 Ways the Splunk Community Helps You Prepare for .conf25

.conf25 is right around the corner, and whether you’re a first-time attendee or a seasoned Splunker, the ...