<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Enable FTP in Splunk Search</title>
    <link>https://community.splunk.com/t5/Splunk-Search/Enable-FTP/m-p/39373#M178790</link>
    <description>&lt;P&gt;There now is an app that runs an FTP server so that you can accept files via FTP into Splunk directly. See the "&lt;A href="https://splunkbase.splunk.com/app/3318/."&gt;FTP Receiver&lt;/A&gt;" app.&lt;/P&gt;</description>
    <pubDate>Tue, 27 Sep 2016 15:47:26 GMT</pubDate>
    <dc:creator>LukeMurphey</dc:creator>
    <dc:date>2016-09-27T15:47:26Z</dc:date>
    <item>
      <title>Enable FTP</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Enable-FTP/m-p/39365#M178782</link>
      <description>&lt;P&gt;How do I enable FTP? (I know how to capture the logs after they are FTP'd to us) &lt;/P&gt;

&lt;P&gt;We have devices that cannot have a universal forwarder installed on them.  They only have FTP files.  We need a way to FTP the files from these devices into our splunk server for processing.&lt;/P&gt;</description>
      <pubDate>Mon, 20 Aug 2012 12:31:53 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Enable-FTP/m-p/39365#M178782</guid>
      <dc:creator>Michael_Schyma1</dc:creator>
      <dc:date>2012-08-20T12:31:53Z</dc:date>
    </item>
    <item>
      <title>Re: Enable FTP</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Enable-FTP/m-p/39366#M178783</link>
      <description>&lt;P&gt;Splunk itself does not include an FTP server. You need a third-party product to provide this functionality for you.&lt;/P&gt;</description>
      <pubDate>Mon, 20 Aug 2012 12:53:16 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Enable-FTP/m-p/39366#M178783</guid>
      <dc:creator>Ayn</dc:creator>
      <dc:date>2012-08-20T12:53:16Z</dc:date>
    </item>
    <item>
      <title>Re: Enable FTP</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Enable-FTP/m-p/39367#M178784</link>
      <description>&lt;P&gt;What product would you suggest?&lt;/P&gt;</description>
      <pubDate>Mon, 20 Aug 2012 12:54:16 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Enable-FTP/m-p/39367#M178784</guid>
      <dc:creator>Michael_Schyma1</dc:creator>
      <dc:date>2012-08-20T12:54:16Z</dc:date>
    </item>
    <item>
      <title>Re: Enable FTP</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Enable-FTP/m-p/39368#M178785</link>
      <description>&lt;P&gt;Which OS / version?&lt;/P&gt;</description>
      <pubDate>Mon, 20 Aug 2012 12:59:11 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Enable-FTP/m-p/39368#M178785</guid>
      <dc:creator>Ayn</dc:creator>
      <dc:date>2012-08-20T12:59:11Z</dc:date>
    </item>
    <item>
      <title>Re: Enable FTP</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Enable-FTP/m-p/39369#M178786</link>
      <description>&lt;P&gt;Server Platform: Linux &lt;BR /&gt;
Server platform Version: RHEL5&lt;BR /&gt;
Client OS: Windows xp or 7&lt;BR /&gt;
Splunk Version: 4.3.3&lt;/P&gt;</description>
      <pubDate>Mon, 20 Aug 2012 13:02:50 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Enable-FTP/m-p/39369#M178786</guid>
      <dc:creator>Michael_Schyma1</dc:creator>
      <dc:date>2012-08-20T13:02:50Z</dc:date>
    </item>
    <item>
      <title>Re: Enable FTP</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Enable-FTP/m-p/39370#M178787</link>
      <description>&lt;P&gt;The most common ftpd in Linux is simply the ftpd you get if you run 'apt-get install ftpd' on a debian/ubuntu box. There's nothing wrong with that one. There's also ProFTPD, PureFTPD, vsftpd, etc. What you might want is an FTPD that has its own user management so you don't have to mix users in the FTP server software with those in the underlying operating system. The default ftpd doesn't do this if I recall correctly, but the other ones I listed do.&lt;/P&gt;</description>
      <pubDate>Mon, 20 Aug 2012 13:26:45 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Enable-FTP/m-p/39370#M178787</guid>
      <dc:creator>Ayn</dc:creator>
      <dc:date>2012-08-20T13:26:45Z</dc:date>
    </item>
    <item>
      <title>Re: Enable FTP</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Enable-FTP/m-p/39371#M178788</link>
      <description>&lt;P&gt;Thank you so much! This is just what I was looking for.&lt;/P&gt;</description>
      <pubDate>Mon, 20 Aug 2012 13:32:12 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Enable-FTP/m-p/39371#M178788</guid>
      <dc:creator>Michael_Schyma1</dc:creator>
      <dc:date>2012-08-20T13:32:12Z</dc:date>
    </item>
    <item>
      <title>Re: Enable FTP</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Enable-FTP/m-p/39372#M178789</link>
      <description>&lt;P&gt;There is a new splunkbase app called "importutil".  It lets you import csv files (or any input) from an http url via the splunk search command line.  Also works for ftp.  sftp is experimental.&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;&lt;A href="http://splunk-base.splunk.com/apps/69078/importutil" target="test_blank"&gt;http://splunk-base.splunk.com/apps/69078/importutil&lt;/A&gt;
&lt;/CODE&gt;&lt;/PRE&gt;

&lt;P&gt;Here is an ftp example.  Pulling from the bureau of labor stats:&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;|importutil ftp ftp://ftp.bls.gov/pub/time.series/ce/ce.data.102.WeeklyEarningsHist
| multikv
| table series_id, year, period, value, footnote_codes
&lt;/CODE&gt;&lt;/PRE&gt;

&lt;P&gt;Here is an example that imports data from the federal reserve economic data website:&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;|importutil http &lt;A href="http://research.stlouisfed.org/fred2/data/PAYEMS.csv" target="test_blank"&gt;http://research.stlouisfed.org/fred2/data/PAYEMS.csv&lt;/A&gt;
| multikv
| table DATE, VALUE
&lt;/CODE&gt;&lt;/PRE&gt;</description>
      <pubDate>Thu, 27 Dec 2012 19:41:15 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Enable-FTP/m-p/39372#M178789</guid>
      <dc:creator>nicholasgrabows</dc:creator>
      <dc:date>2012-12-27T19:41:15Z</dc:date>
    </item>
    <item>
      <title>Re: Enable FTP</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Enable-FTP/m-p/39373#M178790</link>
      <description>&lt;P&gt;There now is an app that runs an FTP server so that you can accept files via FTP into Splunk directly. See the "&lt;A href="https://splunkbase.splunk.com/app/3318/."&gt;FTP Receiver&lt;/A&gt;" app.&lt;/P&gt;</description>
      <pubDate>Tue, 27 Sep 2016 15:47:26 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Enable-FTP/m-p/39373#M178790</guid>
      <dc:creator>LukeMurphey</dc:creator>
      <dc:date>2016-09-27T15:47:26Z</dc:date>
    </item>
    <item>
      <title>Re: Enable FTP</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Enable-FTP/m-p/39374#M178791</link>
      <description>&lt;P&gt;The FTP Receiver app is lacking documentation on how to get this app running.  Does anyone have any suggestions? I ran this &lt;BR /&gt;
(index=_internal sourcetype=ftp_modular_input) OR (sourcetype=ftp) per the troubleshooting details and received nothing. &lt;/P&gt;</description>
      <pubDate>Tue, 29 Sep 2020 21:19:22 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Enable-FTP/m-p/39374#M178791</guid>
      <dc:creator>dpapenbro</dc:creator>
      <dc:date>2020-09-29T21:19:22Z</dc:date>
    </item>
    <item>
      <title>Re: Enable FTP</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Enable-FTP/m-p/39375#M178792</link>
      <description>&lt;P&gt;There is a README.txt file in the app that contains instructions.&lt;/P&gt;

&lt;P&gt;Now that you have the app installed, you will need to create an input to start the FTP server:&lt;/P&gt;

&lt;OL&gt;
&lt;LI&gt;Navigate to "Settings » Data Inputs" at the menu at the top of Splunk's user interface.&lt;/LI&gt;
&lt;LI&gt;Click "FTP"&lt;/LI&gt;
&lt;LI&gt;Click "New" to make a new instance of an input&lt;/LI&gt;
&lt;/OL&gt;

&lt;P&gt;Make sure that the path that you are serving the files from exists.&lt;/P&gt;

&lt;P&gt;See &lt;A href="https://raw.githubusercontent.com/LukeMurphey/splunk-ftp-receiver/master/src/README.txt"&gt;https://raw.githubusercontent.com/LukeMurphey/splunk-ftp-receiver/master/src/README.txt&lt;/A&gt; for the full details.&lt;/P&gt;</description>
      <pubDate>Mon, 17 Sep 2018 17:29:36 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Enable-FTP/m-p/39375#M178792</guid>
      <dc:creator>LukeMurphey</dc:creator>
      <dc:date>2018-09-17T17:29:36Z</dc:date>
    </item>
  </channel>
</rss>

