Getting Data In

Why I don't see newly indexed files in the "Data inputs » Files & directories" menu

VaultTec
Engager

Hello Everyone!

I'm a newbie and have a newbie question:

I've added few log files to be indexed via the Data inputs » Files & directories menu, and I don't see them in the list.
I manage to search these files without any problem, but when I wanna check the list of files I indexed so far I don't have a way to do it,
since the Data inputs » Files & directories menu is not being updated.

Any ideas?

0 Karma
1 Solution

martin_mueller
SplunkTrust
SplunkTrust

You can run this search:

| metadata type=sources index=*

View solution in original post

martin_mueller
SplunkTrust
SplunkTrust

You can run this search:

| metadata type=sources index=*

VaultTec
Engager

It works.
Thank you!

0 Karma

VaultTec
Engager

Thank you for your comment someoni2!

Just indexed once, is that the reason?
If so is there a way to see the files I indexed so far?

Dan.

0 Karma

somesoni2
Revered Legend

Did you add the data input to monitor them continuously or just indexed once? (The last screen in the add file data menu has radio buttons for these options)

0 Karma
Get Updates on the Splunk Community!

.conf24 | Registration Open!

Hello, hello! I come bearing good news: Registration for .conf24 is now open!   conf is Splunk’s rad annual ...

ICYMI - Check out the latest releases of Splunk Edge Processor

Splunk is pleased to announce the latest enhancements to Splunk Edge Processor.  HEC Receiver authorization ...

Introducing the 2024 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...