Splunk Search

How my file path name is modified automatically

anil1432
Explorer

I have one file  which is monitoring from 1 year in deployment server in inputs my file name is   sourcetype: D:\Applications\Smartfill-tools\*\logs\*.log . I received my logs correctly till 2nd April , but after that m geeting error like this 

 

 

And also file is modified automatically on March 18th D:\Applications\Smartfill-tools\*\logs\*.log  To 

D:\Applications\Smartfill-Tools\*\logs\*.log  and if I check with this 

D:\Applications\Smartfill-Tools\*\logs\*.log again my logs are coming. But I don't know how file path name is modified . And also deployment server in inputs the file path is 

D:\Applications\Smartfill-tools\*\logs\*.log and if I change to this 

D:\Applications\Smartfill-Tools\*\logs\*.log and deployed .then if I check  in search then my logs are coming.

I want to know how file path is modified automatically and also small change small "t" to capital "T" is changed .

 

 

If you want more information please reach me out 

 

 

 

 

0 Karma

anil1432
Explorer

IMG_20210614_073422.jpg

0 Karma

anil1432
Explorer

If I give capital "T" in place of small "t" then my logs started genarating . What might be the solution

0 Karma
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Dynamic formatting from XML events

This challenge was first posted on Slack #puzzles channelFor a previous puzzle, I needed a set of fixed-length ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Stronger Security with Federated Search for S3, GCP SQL & Australian Threat ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...