Getting Data In

Windows Path monitor

toledotiago
Explorer

When installing the "universal forwarder" I put a "path to monitor".

But I would like to add another path. How do I add more "path to monitor"?

Labels (1)
Tags (2)
0 Karma
1 Solution

toledotiago
Explorer

Thanks for the answer, researching I discovered more details that I think are important.

 

PATH: C:\Program Files\SplunkUniversalForwarder\etc\apps\SplunkUniversalForwarder\local

splunk_path_monitor.png

[monitor://C:\Program Files\Idaptive\Idaptive Connector\log.txt]
disabled = false

[monitor://C:\Program Files\Centrify\Centrify Connector\log.txt]
disabled = false

View solution in original post

0 Karma

richgalloway
SplunkTrust
SplunkTrust

Edit inputs.conf on the UF. Copy the existing monitor stanza and modify the copy to suit.  Then restart the forwarder.

---
If this reply helps you, Karma would be appreciated.
0 Karma

toledotiago
Explorer

Thanks for the answer, researching I discovered more details that I think are important.

 

PATH: C:\Program Files\SplunkUniversalForwarder\etc\apps\SplunkUniversalForwarder\local

splunk_path_monitor.png

[monitor://C:\Program Files\Idaptive\Idaptive Connector\log.txt]
disabled = false

[monitor://C:\Program Files\Centrify\Centrify Connector\log.txt]
disabled = false

0 Karma

richgalloway
SplunkTrust
SplunkTrust
Is there a problem with that?
---
If this reply helps you, Karma would be appreciated.
0 Karma

toledotiago
Explorer

No problem, I'm just sharing information that I think can help other people. Thank you.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas

    Thursday, June 25, 2026  |  11AM PDT / 2PM EDT  Duration: 1 Hour (Includes live Q&A) Register to ...

Analytics Workspace deprecation

As of Splunk Cloud Platform 10.4.2604 and Splunk Enterprise 10.4, Analytics Workspace is now deprecated. ...

Splunk Developer Day Recap: Building, Publishing, and Growing on the Splunk Platform

Splunk Developer Day brought the Splunk developer community together for a practical look at what it means to ...