Getting Data In

getting host from file name?

a212830
Champion

Hi,

I have a bunch of files within a directory that I am monitoring. The host is not contained within the data, but rather is part of the file name. (hostname.cpuinfo.txt, hostname.proxyinfo.txt...)Is there anyway to tell splunk to programmatically pick up this information?

Tags (2)
0 Karma
1 Solution

sdaniels
Splunk Employee
Splunk Employee

a212830
Champion

Thanks! That did it. I used the host_segment parameter.

0 Karma
Get Updates on the Splunk Community!

Splunk MCP & Agentic AI: Machine Data Without Limits

  Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization ...

Finding Based Detections General Availability

Overview  We’ve come a long way, folks, but here in Enterprise Security 8.4 I’m happy to announce Finding ...

Get Your Hands Dirty (and Your Shoes Comfy): The Splunk Experience

Hands-On Learning and Technical Seminars  Sometimes, you just need to see the code. For those looking for a ...