Monitoring Splunk

How do we read logs under the daily format directory?

thirulog
New Member

I have logs under the daily date format directory

How I ready the logs?

Directory : E:\Ora\DRM\daillyDate\log.txt

Tags (1)
0 Karma

woodcock
Esteemed Legend

Options are plenteous, there is also this:

[monitor://E:\Ora\DRM\...\log.txt]
0 Karma

lycollicott
Motivator

Monitor the directory E:\Ora\DRM and it will index everything below that.

(NOTE: You can use wildcards, but that doesn't mean you should use wildcards. )

0 Karma

richgalloway
SplunkTrust
SplunkTrust

Wildcards are allowed in file paths. Try

[monitor://E:\Ora\DRM\*\log.txt]
---
If this reply helps you, Karma would be appreciated.
0 Karma

woodcock
Esteemed Legend

perhaps missing a path segment there?

0 Karma

thirulog
New Member

I have [monitor://E:\Ora\DRM**.txt] but did not work

Daily date directory created for every day and there are 20 logs under the date directory

0 Karma

woodcock
Esteemed Legend

I think that he meant this:

[monitor://E:\Ora\DRM\*\*\log.txt]
0 Karma
Get Updates on the Splunk Community!

Unleash Unified Security and Observability with Splunk Cloud Platform

     Now Available on Microsoft AzureThursday, March 27, 2025  |  11AM PST / 2PM EST | Register NowStep boldly ...

Splunk AppDynamics with Cisco Secure Application

Web applications unfortunately present a target rich environment for security vulnerabilities and attacks. ...

New Splunk Innovations Enhance Performance and Accelerate Troubleshooting

Splunk is excited to announce new releases that empower ITOps and engineering teams to stay ahead in ever ...