Skip to main content

In the “File Monitor” Allowlist, can I use REGEX expressions like \d{2} or just ! & *?

no, it is wildcard matching only


Would be a good enhancement though


Pretty please, it would be a nice enhancement.  I use the allow list/deny list concept in splunk UF quite a bit.


Reply