Getting Data In

Why I don't see newly indexed files in the "Data inputs » Files & directories" menu

VaultTec
Engager

Hello Everyone!

I'm a newbie and have a newbie question:

I've added few log files to be indexed via the Data inputs » Files & directories menu, and I don't see them in the list.
I manage to search these files without any problem, but when I wanna check the list of files I indexed so far I don't have a way to do it,
since the Data inputs » Files & directories menu is not being updated.

Any ideas?

0 Karma
1 Solution

martin_mueller
SplunkTrust
SplunkTrust

You can run this search:

| metadata type=sources index=*

View solution in original post

martin_mueller
SplunkTrust
SplunkTrust

You can run this search:

| metadata type=sources index=*

VaultTec
Engager

It works.
Thank you!

0 Karma

VaultTec
Engager

Thank you for your comment someoni2!

Just indexed once, is that the reason?
If so is there a way to see the files I indexed so far?

Dan.

0 Karma

somesoni2
Revered Legend

Did you add the data input to monitor them continuously or just indexed once? (The last screen in the add file data menu has radio buttons for these options)

0 Karma
Get Updates on the Splunk Community!

Splunk Decoded: Service Maps vs Service Analyzer Tree View vs Flow Maps

It’s Monday morning, and your phone is buzzing with alert escalations – your customer-facing portal is running ...

What’s New in Splunk Observability – September 2025

What's NewWe are excited to announce the latest enhancements to Splunk Observability, designed to help ITOps ...

Fun with Regular Expression - multiples of nine

Fun with Regular Expression - multiples of nineThis challenge was first posted on Slack #regex channel ...