Getting Data In

Why is .swp file getting monitored along with the actual file?

Path Finder

I have added directory path in inputs.conf to monitor all the files of that directory. A .swp file got created once and splunk started monitoring that as well.

I have deleted the .swp file. Still splunk is indexing data from the .swp file.
Its an urgent requirement. So, need some suggestion on this

Labels (1)
0 Karma


i also have the problem,so have you solve it ?

0 Karma
Get Updates on the Splunk Community!

Index This | A sphere has three, a circle has two, and a point has zero. What is it?

September 2023 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...

Build Scalable Security While Moving to Cloud - Guide From Clayton Homes

 Clayton Homes faced the increased challenge of strengthening their security posture as they went through ...

Mission Control | Explore the latest release of Splunk Mission Control (2.3)

We’re happy to announce the release of Mission Control 2.3 which includes several new and exciting features ...