Installation

Configure Splunk to read .gz files

hethaishibk
New Member

I need to configure splunk to read .gz file. When we unzip the file it contains the .csv file. Able to read the csv file but not getting how to configure for the gz files. can you please help

-rw-r--r--. 1 guard guard 4610 Apr 9 17:00 DMv2_EXP_BUFF_USAGE_20190409200000.gz
-rw-r--r--. 1 guard guard 4602 Apr 9 18:00 DMv2_EXP_BUFF_USAGE_20190409210000.gz
-rw-r--r--. 1 guard guard 4758 Apr 9 19:00 DMv2_EXP_BUFF_USAGE_20190409220000.gz
-rw-r--r--. 1 guard guard 4448 Apr 9 20:00 DMv2_EXP_BUFF_USAGE_20190409230000.gz
-rw-r--r--. 1 guard guard 4468 Apr 9 21:00 DMv2_EXP_BUFF_USAGE_20190410000000.gz
-rw-r--r--. 1 guard guard 4505 Apr 9 22:00 DMv2_EXP_BUFF_USAGE_20190410010000.gz
-rw-r--r--. 1 guard guard 4448 Apr 9 23:00 DMv2_EXP_BUFF_USAGE_20190410020000.gz
-rw-r--r--. 1 guard guard 4551 Apr 10 00:00 DMv2_EXP_BUFF_USAGE_20190410030000.gz
-rw-r--r--. 1 guard guard 4569 Apr 10 01:00 DMv2_EXP_BUFF_USAGE_20190410040000.gz

Tags (1)
0 Karma

diogofgm
SplunkTrust
SplunkTrust

Just monitor the folder containing those files. Splunk is able to handle the .gz.

------------
Hope I was able to help you. If so, some karma would be appreciated.
0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...