Currently utilizing Splunk Cloud and have what is most likely a new user question.
I have a .csv file that is continuously updated at random intervals. Uploading a new version of the .csv to Splunk every time is not viable. What is the best practice to keep a file like that up to date in Splunk?
I have been unable to find a app or tool to connect the two platforms so exporting the .csv from one and uploading to splunk is the current process.
Thank you
Is the file completely replaced each time or is new data appended?
What are the two platforms? Have you tried using the Universal Forwarder?