Documentation: 3.0.2
Print Version Contents
This page last updated: 12/31/07 04:12pm

Configuration file list

Here is a list of all Splunk's configuration files with descriptions. Descriptions link to configuration instructions. Examples and specifications for each configuration file are contained in $SPLUNK_HOME/etc/bundles/README/.

File Purpose
access_controls.conf Configure granular access control settings.
alert_actions.conf Customize Splunk's global alerting actions.
auth.conf Toggle between Splunk's built-in authentication or LDAP. Configure LDAP.
deployment_server.conf Set up deployment servers and clients.
eventdiscoverer.conf Tune automatic event discovery.
eventtypes.conf Create event type definitions.
field_actions.conf Enable clickable actions on fields in SplunkWeb.
indexes.conf Manage and configure index settings.
inputs.conf Set up data inputs.
literals.conf Customize the text displayed in SplunkWeb.
metaevents.conf Optionally add a preamble message for metaevents.
outputs.conf Set up forwarding, routing, cloning and data balancing.
prefs.conf Specify user preferences and dashboards for SplunkWeb.
props.conf Set indexing property configurations, including timezone offset and custom sourcetype rules. Also map transforms to event properties.
savedsearches.conf Define saved searches and their associated schedules and alerts.
segmenters.conf Customize segmentation rules for indexed events.
server.conf Enable SSL and specify certification locations.
transforms.conf Configure regex transformations to perform on data inputs. Use in tandem with props.conf.
user_seed.conf Set a default user and password.
web.conf Configure the SplunkWeb interface.
Previous: Pre-trained source types    |    Next: access_controls.conf

Comments

No comments have been submitted.

Log in to comment.