Getting Data In

Why can't I browse mapped drives under "Add Data" -> "Files and Directories"?

frankom
New Member

Installed Splunk Light on Windows 2012 R2 Server. Mapped windows 2003
server network drive. Under Add Data -> Files and Directories, I cannot browse the
mapped drive. I would like to have Splunk run on the 2012 server and collect
data/events/logs from all other Windows boxes (mapped drives/directories/files) on
the network. Any assistance on how to do this would be greatly appreciated.
Thanks. Frank.

0 Karma

schose
Builder

Hi,

A mapped drive is user specific. With default settings splunk service is running as system user.

For indexing data on a network drive just use the unc path - make sure the computeraccount having right on the share. Otherwise run splunk with an account with rights on the share.

Regards,

Andreas

0 Karma
Get Updates on the Splunk Community!

Splunk Edge Processor | Popular Use Cases to Get Started with Edge Processor

Splunk Edge Processor offers more efficient, flexible data transformation – helping you reduce noise, control ...

Introducing New Splunkbase Governance!

Splunk apps are essential for maximizing the value of your Splunk Experience. Whether you’re using the default ...

3 Ways to Make OpenTelemetry Even Better

My role as an Observability Specialist at Splunk provides me with the opportunity to work with customers of ...