Getting Data In

Why I don't see newly indexed files in the "Data inputs » Files & directories" menu

VaultTec
Engager

Hello Everyone!

I'm a newbie and have a newbie question:

I've added few log files to be indexed via the Data inputs » Files & directories menu, and I don't see them in the list.
I manage to search these files without any problem, but when I wanna check the list of files I indexed so far I don't have a way to do it,
since the Data inputs » Files & directories menu is not being updated.

Any ideas?

0 Karma
1 Solution

martin_mueller
SplunkTrust
SplunkTrust

You can run this search:

| metadata type=sources index=*

View solution in original post

martin_mueller
SplunkTrust
SplunkTrust

You can run this search:

| metadata type=sources index=*

VaultTec
Engager

It works.
Thank you!

0 Karma

VaultTec
Engager

Thank you for your comment someoni2!

Just indexed once, is that the reason?
If so is there a way to see the files I indexed so far?

Dan.

0 Karma

somesoni2
SplunkTrust
SplunkTrust

Did you add the data input to monitor them continuously or just indexed once? (The last screen in the add file data menu has radio buttons for these options)

0 Karma
Get Updates on the Splunk Community!

Index This | I am a number, but when you add ‘G’ to me, I go away. What number am I?

March 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...

What’s New in Splunk App for PCI Compliance 5.3.1?

The Splunk App for PCI Compliance allows customers to extend the power of their existing Splunk solution with ...

Extending Observability Content to Splunk Cloud

Register to join us !   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to ...