Dashboards & Visualizations

Are "default" and "local" folders case-sensitive in Splunk?

mgaraventa_splu
Splunk Employee
Splunk Employee

Hi all,

I've created my personal app with the default and local folders in them. I've realized that the conf files inside my local folder inside the app are not applied. I have named it "Local". Is there any issue by using uppercases when creating default and local folders? Thanks in advance for the answer.

Tags (3)
1 Solution

mgaraventa_splu
Splunk Employee
Splunk Employee

That's correct. "default" and "local" folders have to be all lowercases in Splunk. Otherwise their content will not be applied.

In general if you have doubts about conf files being applied, it's always a good idea to use the btool command to do the first troubleshooting in order to figure out if Splunk is missing or is doing anything wrong, for example because of a typo. See also the official btool documentation article for further details:

http://docs.splunk.com/Documentation/Splunk/6.0.1/Troubleshooting/Usebtooltotroubleshootconfiguratio...

View solution in original post

mgaraventa_splu
Splunk Employee
Splunk Employee

That's correct. "default" and "local" folders have to be all lowercases in Splunk. Otherwise their content will not be applied.

In general if you have doubts about conf files being applied, it's always a good idea to use the btool command to do the first troubleshooting in order to figure out if Splunk is missing or is doing anything wrong, for example because of a typo. See also the official btool documentation article for further details:

http://docs.splunk.com/Documentation/Splunk/6.0.1/Troubleshooting/Usebtooltotroubleshootconfiguratio...

Get Updates on the Splunk Community!

.conf24 | Registration Open!

Hello, hello! I come bearing good news: Registration for .conf24 is now open!   conf is Splunk’s rad annual ...

ICYMI - Check out the latest releases of Splunk Edge Processor

Splunk is pleased to announce the latest enhancements to Splunk Edge Processor.  HEC Receiver authorization ...

Introducing the 2024 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...