Splunk configuration
- by user1696748
is there a proper procedure to have real-time data in my application?
Or I can add in any way so long as I added correctly? Firstly I created my application, then add new index. Next, I added the data scripts then added those logs that I want Splunk to monitor.
Currently I cannot have real-time data. Perhaps due to my scripted inputs.
Current situation is that Splunk did run my .bat in bin folder(logs were updated). However, my chart always shows "waiting for data" ...