Getting Data In

Why is Splunk not showing all hosts after adding a data input that uses variables as the host name?

Builder

Hi,
I have added a data input that uses variables as the host name, so /opt/mark/home/.../.../logs
It uses segment 5 as the host, and it's picking up 12 of them, but it's missing a few of them.

Any ideas?

Tags (3)
1 Solution

Builder

Solution found; Splunk data inputs are case sensitive. Was missing a capital letter.

View solution in original post

Builder

Solution found; Splunk data inputs are case sensitive. Was missing a capital letter.

View solution in original post

Don’t Miss Global Splunk
User Groups Week!

Free LIVE events worldwide 2/8-2/12
Connect, learn, and collect rad prizes
and swag!