Splunk Search

How do I automate the indexing and field extraction process?

minkyuk
Explorer

Good morning,

For the past few days, I have been putting log files through an indexer and extracted some fields manually.

However, I want to automate this process where log files are generated automatically at a certain directory. I am stuck on how to perform this task. (Daily scheduled event perhaps?)

If anyone has any idea on this matter, I would appreciate your input.

Thanks,
Jack

0 Karma

woodcock
Esteemed Legend

It is very straightforward, start here and it should be easy:

http://docs.splunk.com/Documentation/Splunk/6.2.4/Data/Monitorfilesanddirectories

0 Karma
Get Updates on the Splunk Community!

Join Us for Splunk University and Get Your Bootcamp Game On!

If you know, you know! Splunk University is the vibe this summer so register today for bootcamps galore ...

.conf24 | Learning Tracks for Security, Observability, Platform, and Developers!

.conf24 is taking place at The Venetian in Las Vegas from June 11 - 14. Continue reading to learn about the ...

Announcing Scheduled Export GA for Dashboard Studio

We're excited to announce the general availability of Scheduled Export for Dashboard Studio. Starting in ...