Getting Data In

.swp file getting monitored along with the actual file


I have added directory path in inputs.conf to monitor all the files of that directory. A .swp file got created once and splunk started monitoring that as well.

I have deleted the .swp file. Still splunk is indexing data from the .swp file.
Its an urgent requirement. So, need some suggestion on this

0 Karma
